Arctic Wolf Active Response

Active Response for Arctic Wolf® Managed Detection and Response(MDR) enables Arctic Wolf to respond to threats detected in your environments. When an incident is detected, Arctic Wolf initiates the appropriate response action to contain, remove, or disconnect a threat from your critical infrastructure.

Active Response includes first- and third-party integrations for various surface areas and response actions.

Email

Identity

Host

Network

URL

  • Generic Firewall Denylist — Includes applications such as:
    • Check Point Quantum®
    • Fortinet FortiGate® 次世代ファイアウォール(NGFW)
    • Palo Alto Networks Panorama®

Active Response configuration example