Skip to main content

Availability

This connector works with Rapid7 products available on the Command Platform API (formerly Insight Platform API). Products that use a separate local API — such as the InsightVM console — are not supported.

Capabilities

The Rapid7 connector supports automatic account provisioning on the Command Platform. New accounts receive an invitation email and set their own password.
Role sync includes Rapid7’s shared roles even when they don’t appear in your account’s role list. The shared Administrator, View and Change, and View Only roles are assignable across your whole account, but Rapid7 only lists them in the role catalog for organizations subscribed to certain products. C1 always includes these three roles so any assignment referencing one still syncs correctly.
Role and group assignments sync across every organization in your account. If your account has more than one organization, a user or group can hold different role assignments in each. C1 collects assignments from every organization, not just one.

Connector actions

Connector actions are custom capabilities that extend C1 automations with app-specific operations. You can use connector actions in the Perform connector action automation step.
Rapid7 accounts cannot be temporarily disabled on the Command Platform. To revoke access, delete the account; the same user can be re-invited later. Role and product access on a user are managed in the Rapid7 admin UI.
Additional functionality:
  • Account creation via invitation email
  • Account deletion
  • Account profile updates via the update_user action

Gather Rapid7 configuration information

Configuring the connector requires you to pass in information from Rapid7. Gather these configuration details before you move on.
A user with administrator permissions in Rapid7 must generate the API key. The connector requires a personal API key (user key), not an organization API key. Organization keys only provide access to Rapid7 capability APIs and will cause the connector to fail with permission errors.
Here’s the information you’ll need:
  • API Key
  • Region
See the Rapid7 docs for information on how to acquire credentials: View the documentation

Configure the Rapid7 connector

To complete this task, you’ll need:
  • The Connector Administrator or Super Administrator role in C1
  • Access to the set of Rapid7 configuration information gathered by following the instructions above
Follow these instructions to use a built-in, no-code connector hosted by C1.
1
In C1, navigate to Apps > Connectors and click Add connector.
2
Search for Rapid7 and click Add.
3
Choose where to add the connector: Create a new app, or Add to an existing app (then select the app).If you’re creating a new app, choose whether to link it to an application discovered from your identity provider: select Yes and pick the IdP application, or No to continue with just the connector.
4
Set the connector’s Name and, optionally, a Description.
5
Click the pencil icon next to Owners to choose who can configure and manage this connector.
6
Click Add. The connector is created and its configuration page opens.
7
Find the Settings area of the page and click Edit.
8
Enter the configuration information from the previous section.
9
Click Save.
10
The connector’s label changes to Syncing, followed by Connected. You can view the logs to ensure that information is syncing.
Done. Your Rapid7 connector is now pulling access data into C1.