[Qualys] Create a Service Account
Log into Qualys as an Administrator, then navigate to Vulnerability Management and click the USERS option from the top menu (toward the right side).
Note: An administrator in Qualys is a user assigned either the ’Manager’ or ’Unit Manager’ role. Both admin roles can create additional users, such as the service user that you will use for the watchTowr Integration.
In the Users interface, click New > User, which will open a modal titled New User
Under the General Information section on the left, provide the required details, including First Name, Last Name, Title, Phone, Email Address, Address 1, and Country
Note: Ensure that this account is linked to an email account that remains active even after the employee leaves the company.
In the User Role section, select ’Reader’ for the user's role, and check both the 'GUI' and 'API' boxes. See the Qualys roles documentation for more information on these roles.
Under Asset Groups on the left, click the 'Add asset groups' dropdown and select either 'All' or the specific asset group(s) needed.
Click Save, located in the right corner of the modal to create the user account
Review new entry for newly create user. Record the random username for this account
Log out of the Administrative account, and log in with as the newly created user.
[Qualys] Complete service account registration
Before progressing, you will need to access the registered email and receive the message containing a registration link to begin the user registration process.
Copy the OTP code provided in the email, which you will need on the next screen
Follow the prompts to complete the registration, and you will receive a secret for the account
If you lose this password, follow the Forgot Password steps.
On the same screen, locate and record the base URL for UI and API access
Log into the Qualys Vulnerability Management UI using the username and the secret for this account, to complete account registration
[watchTowr] Configure the Integration
Log into the watchTowr platform and navigate to Integrations
Select Tenable, click Set Up Now to open the connection form
Enter the following information:
Connection name: A name for the connection, anything your team can use to identify it later.
Instance URL: Obtained during account registration
Username: Randomly generated during account creation
Secret: Obtained during account registration
Click Verify connection and wait for the system to test access
Click Continue to save the integration Note: You may need to wait up to 24 hours for the data to be ingested.
Review the Integrations page
If the connection is successful, the integration will appear under the Qualys VMDR section with your connection details listed. Otherwise, try again or contact Support.
If you need assistance, don't hesitate to contact the watchTowr team. Our knowledgeable team is ready to help you navigate the watchTowr Platform and address any questions or concerns.
