This document outlines the steps required to integrate Abnormal Security with the AiStrike platform by generating an access token and configuring network access.◼︎
Prerequisites
-
Administrator access to the Abnormal Security platform
-
Ability to manage integrations and IP allowlists
Step 1: Generate an Abnormal Security Access Token
To set up the Abnormal Security integration, you need to obtain an access token from your Abnormal Security platform. Follow these steps:
-
Sign in to the Abnormal Security platform
-
In the Manage section, click on Settings
-
In the Settings section, click on Integrations
-
Scroll down to the Additional Integrations section
-
Click + Connect on the Abnormal REST API card to display an integration page for your organization
-
Copy and save the Access token
Important: Copy the access token immediately as it may not be shown again. Store it securely.
NOTE: If you are using an IP allowlist, in the IP Safelist field, enter the IP addresses for your deployment.
Please ensure the following AiStrike IP addresses are allowlisted:
3.135.165.25/32
3.148.24.98/32
3.148.93.249/32
3.14.192.137/32
13.201.28.59/32
18.223.178.199/32
52.15.138.222/32
54.246.180.34/32
63.35.37.74/32
54.220.227.162/32
Step 2: Provide the Token to AiStrike
Once the access token is generated and IP allowlisting is completed (if required):
-
Share the Abnormal Security Access Token securely with the AiStrike team, or
-
Enter the token directly into the AiStrike integration page. Once done, inform your AiStrike representative.
The following are the fields for integration:
|
Field Name |
Description |
Example / Value |
|---|---|---|
|
Configuration Name |
A descriptive name to help identify this integration in AiStrike. |
Abnormal Security |
|
Description |
Brief description of the integration |
AiStrike Abnormal Security |
|
API Endpoint URL |
API endpoint based on your tenant region. |
US: https://api.abnormalplatform.com EU: https://eu.rest.abnormalsecurity.com |
|
API Authentication Token |
API token generated from the Abnormal Security platform. Ensure it is stored securely. |
<Abnormal App Access Token> |
-
AiStrike will begin ingesting data from Abnormal Security using the configured endpoint and authentication token.