Maxmind GeoIP2 Precision Services offers industry-leading IP intelligence data, updated weekly.Country service works best for customers who only need to know the country of an IP address. Country names are available in English, Simplified Chinese, German, Spanish, French, Japanese, Portuguese, and Russian. City service provides most accurate information about the location of an IP address to the zip or postal code level and identifies the associated ISP or organization.
This document provides information about the Maxmind connector, which facilitates automated interactions, with a Maxmind server using FortiSOAR™ playbooks. Add the Maxmind connector as a step in FortiSOAR™ playbooks and perform automated operations, such as getting all the information about a specified IP and getting insight information about a specified IP.
Connector Version: 1.0.0
FortiSOAR™ Version Tested on: 4.9.0.0-708 and later
Maxmind GeoIP2 Precision Services Version Tested on: 2.1
Authored By: Fortinet
Certified: Yes
All connectors provided by FortiSOAR™ are delivered using a FortiSOAR™ repository. Therefore, you must set up your FortiSOAR™ repository and use the yum
command to install connectors:
yum install cyops-connector-maxmind
For the procedure to install a connector, click here.
For the procedure to configure a connector, click here.
In FortiSOAR™, on the Connectors page, select the Maxmind connector and click Configure to configure the following parameters:
Parameter | Description |
---|---|
Server URL | URL of the Maxmind server to which you will connect and perform the automated operations. |
Maxmind Userid | Username to access the Maxmind server. |
Maxmind License Key | License key to access the Maxmind server. |
Verify SSL | Verify SSL connection to the Maxmind server. Defaults to True . |
The following automated operations can be included in playbooks:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve information. |
The JSON output contains all the details of the specified IP.
Following image displays a sample output:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve city information. |
The JSON output contains the city details of the specified IP.
Following image displays a sample output:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve country information. |
The JSON output contains the country details of the specified IP.
Following image displays a sample output:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve insight information. |
The JSON output contains the insight details of the specified IP.
Following image displays a sample output:
The Sample - Maxmind - 1.0.0
playbook collection comes bundled with the Maxmind
connector. This playbook contains steps using which you can perform all supported actions. You can see the bundled playbooks in the Automation > Playbooks section in FortiSOAR™ after importing the Maxmind
connector.
Note: If you are planning to use any of the sample playbooks in your environment, ensure that you clone those playbooks and move them to a different collection, since the sample playbook collection gets deleted during connector upgrade and delete.
Maxmind GeoIP2 Precision Services offers industry-leading IP intelligence data, updated weekly.Country service works best for customers who only need to know the country of an IP address. Country names are available in English, Simplified Chinese, German, Spanish, French, Japanese, Portuguese, and Russian. City service provides most accurate information about the location of an IP address to the zip or postal code level and identifies the associated ISP or organization.
This document provides information about the Maxmind connector, which facilitates automated interactions, with a Maxmind server using FortiSOAR™ playbooks. Add the Maxmind connector as a step in FortiSOAR™ playbooks and perform automated operations, such as getting all the information about a specified IP and getting insight information about a specified IP.
Connector Version: 1.0.0
FortiSOAR™ Version Tested on: 4.9.0.0-708 and later
Maxmind GeoIP2 Precision Services Version Tested on: 2.1
Authored By: Fortinet
Certified: Yes
All connectors provided by FortiSOAR™ are delivered using a FortiSOAR™ repository. Therefore, you must set up your FortiSOAR™ repository and use the yum
command to install connectors:
yum install cyops-connector-maxmind
For the procedure to install a connector, click here.
For the procedure to configure a connector, click here.
In FortiSOAR™, on the Connectors page, select the Maxmind connector and click Configure to configure the following parameters:
Parameter | Description |
---|---|
Server URL | URL of the Maxmind server to which you will connect and perform the automated operations. |
Maxmind Userid | Username to access the Maxmind server. |
Maxmind License Key | License key to access the Maxmind server. |
Verify SSL | Verify SSL connection to the Maxmind server. Defaults to True . |
The following automated operations can be included in playbooks:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve information. |
The JSON output contains all the details of the specified IP.
Following image displays a sample output:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve city information. |
The JSON output contains the city details of the specified IP.
Following image displays a sample output:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve country information. |
The JSON output contains the country details of the specified IP.
Following image displays a sample output:
Parameter | Description |
---|---|
IP Address | IP address for which you retrieve insight information. |
The JSON output contains the insight details of the specified IP.
Following image displays a sample output:
The Sample - Maxmind - 1.0.0
playbook collection comes bundled with the Maxmind
connector. This playbook contains steps using which you can perform all supported actions. You can see the bundled playbooks in the Automation > Playbooks section in FortiSOAR™ after importing the Maxmind
connector.
Note: If you are planning to use any of the sample playbooks in your environment, ensure that you clone those playbooks and move them to a different collection, since the sample playbook collection gets deleted during connector upgrade and delete.