Infoblox ActiveTrust uses highly accurate machine-readable threat intelligence data via a flexible Threat Intelligence Data Exchange (TIDE) to aggregate, curate, and enable distribution of data across a broad range of infrastructure.
A Cisco Firepower Management Center feature, Threat Intelligence Director, ingests threat feeds and correlates enriched observations from Cisco security solutions to detect and alert on security incidents. By converting intelligence into actionable indicators of compromise, you can block or monitor more threats, reduce the number of alerts you must review, and improve your overall security posture.
Cisco Firepower Management Center manages the following Cisco network security solutions:
- Firepower Next-Generation Firewall
- Firepower Next-Generation IPS
- ASA with FirePOWER Services
- FirePOWER Threat Defense for ISR
- Advanced Malware Protection (AMP) for Networks
The attached document provides step by step instruction how to load ActiveTrust threat intelligence on Cisco Threat Intelligence Director. If you are not familiar with ActiveTrust TIDE and Dossier, please refer this post.
What kind of infoblox license should be ordered for this integration ?
The integration requires access to Infoblox TIDE, so ActiveTrust Plus or Advanced, ActiveTrust Cloud Plus subscription.