Configure for Arctic Wolf Active Response
With the Active Response service, Arctic Wolf® can perform identity response actions using .
This Public Preview of the Active Response integration is available for Active Response only and does not provide security monitoring.
- Disable/Enable a user
These actions are not applicable to service accounts, the last owner of an account, externally managed administrators, or users provisioned through automated provisioning.
When a user is disabled, they are logged out of the Customer Portal, Vault, and application the next time each service refreshes the user's session. When the user is re-enabled, they must re-enter their Secret Key to sign in.
For more information, see Response action descriptions.
These resources are required:
-
A account at the Business tier
-
Administrator permissions for
- Contact your CST to validate the Active Response integration. Have an account or environment ready that Arctic Wolf can use to validate the desired response actions without causing interruptions.