1. In the Lumu Portal, head to the panel on the left and open the Integrations drop-down menu. Then, click on Apps. Click on the Response tab on the right to filter the available integrations accordingly.
2. Locate the Azure Network Security Groups integration
3. Familiarize yourself with the integration details and click the Activate button to start the integration setup process.
4. Carefully read the instructions provided. Once ready, click on Activate to begin the redirection process to Microsoft to complete the integration activation
5. The Microsoft sign-in page will appear as shown below
Make sure to log in with an administrator account, as only an administrator can grant full access across the entire organization.
6. After successfully authenticating your account, you'll encounter a window listing the permissions that you are about to grant access to. Check the box labeled Consent on behalf of your organization to proceed. Then, click Accept.
If the box labeled Consent on behalf of your organization isn’t checked, you will not be able to proceed with the integration setup.
7. Now, you will see the following window, in which you will need to select the subscription for the integration. Keep in mind that you need an active subscription that supports Network Security Group services. After selecting the subscription click on Next.
8. In the following window, enter a meaningful Name. Under Threat Types, select the particular threat mappings you wish to push to Microsoft Azure NSG. Then, choose the Network Security Group you plan to push the indicators to. Once everything is complete, click on Activate.
If you created a new one using the instructions in the previous section, then here you would select the Network Security Group name from Step 3c from the
Create a Network Security Group section.
You need at least one Network Security Group associated with your authenticated account for the setup process to continue.
9. Wait for Lumu to setup the integration mechanism
10. Once it’s finished you can click Close
11. The integration is now created and active. Now, the Lumu Portal will display the details of the created integration.