You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
As stated in #2, anyone can access Cortex with no authentication. Anonymous users/services can run analyzers and consume quotas/queries and that is not desirable.
Possible Solutions
Implement local, LDAP and AD authentication on the Web UI
Implement local, LDAP and AD authentication on the REST API
Implement API key authentication on the REST API for TheHive and 3rd party services
Complementary information
It must be possible to change or lock down the API key if it is compromised/leaked.
The text was updated successfully, but these errors were encountered:
Request Type
Feature Request
Work Environment
NA
Problem Description
As stated in #2, anyone can access Cortex with no authentication. Anonymous users/services can run analyzers and consume quotas/queries and that is not desirable.
Possible Solutions
Complementary information
It must be possible to change or lock down the API key if it is compromised/leaked.
The text was updated successfully, but these errors were encountered: