Configure Operational Technology Plugin Connections to Command Center

Before proceeding, import the eyeInspect certificates into eyeSight.

To define the connections between the Appliances and the Command Centers:

  1. Verify that a user account and SSH credentials for the Operational Technology Plugin are defined on the Command Center.
  2. In the Forescout Console, select Tools > Options > Operational Technology, and then select the Command Center tab.
  3. In the Command Center tab, do one of the following:
    • To define a new connection select Add
    • To modify an existing connection, select it from the list. Double-click or select Edit.
  4. In the General step of the Add/Edit dialog, specify the following information:
  5. IP/Name The hostname or IP address of the Command Center instance
    TCP Port The port that Forescout connects to on the Command Center machine
    Connecting CounterACT device

    The hostname or IP of the Connecting Forescout device

    Do not select a device that runs a Passive Sensor.

  6.  In the Command Center Credentials step, specify the following information:
  7. User Name, Password, and Confirm Password Specify the account that Forescout uses to query the Command Center and retrieve endpoint data. Create a dedicated account in the Command Center for the Operational Technology Plugin (do not use the default admin account), to avoid the following issues:
    • If the admin account is used, and a user changes the password for that account on the Command Center, the Operational Technology Plugin will fail to connect to the Command Center. In addition, multiple login attempts will cause account lockout, and the administrator will have to reset the password via the cli.
    • If a user logged in to the admin account sets filters in the Command Center, for example, to access only a specific group of assets, the Operational Technology Plugin will only be able to access that group of assets via the API.
    SSH User Name, SSH Password, and Confirm Password Specify SSH credentials for the Command Center server, through which the Operational Technology Plugin can connect to the server. Use the “silentdefense” user account setup during the initial Command Center installation.
  8. Select Finish. The Command Center instance appears in the table.
  9. Set up the Command Center Certificates.