Trellix
Ingest endpoint detection findings from Trellix.
Imports endpoint detection findings from Trellix (formerly McAfee/FireEye) into Basirah.
Prerequisites
- Trellix account with API access
- OAuth 2.0 client credentials
Authentication
OAuth 2.0 — client credentials flow.
Configuration
No additional configuration fields required. Provide OAuth 2.0 credentials during setup.
Data flow
Ingests endpoint detection findings from Trellix and normalizes them into Basirah’s common finding format.