You can integrate Carbon Black App Control with a locally installed WildFire private cloud device instead of a public cloud service . This option eliminates limits on the number of queries you can submit in any given time period.
You can integrate multiple local WildFire appliances with an Carbon Black App Control Server. Analysis requests are distributed among them.
Procedure
- In the console, click the configuration (gear) icon and click System Configuration.
- Click the Connectors tab and then click the Palo Alto Networks tab.
- Click the Edit button at the bottom of the page.
- In the File Analysis panel, click the Local radio button and then click the Add New button. The local appliance configuration fields are displayed.
- In the
Name
field, enter the name by which you want this WildFire appliance identified in the configuration. - In the
Address
field, enter the IP address or hostname for the WildFire appliance. Enter this as an address or name, not as a URL with the “https” prefix. - In the
API Key
field, enter the API key for this appliance.
- In the
- Click the Test button to validate the API key and the connection between the WildFire appliance and the Carbon Black App Control Server. If the test is not successful, use the failure message to troubleshoot the connection problem.
- In the File Analysis panel for this device, check the Appliance Enabled checkbox.
- If the license and connectivity test passed and you have finished entering the other required information, including checking the Integration Enabled box at the top of the page and configuring automatic lookups if you choose, click the Update button to save your changes.
- To add more private cloud appliances, click the Add New button and repeat the configuration for another appliance.