> For the complete documentation index, see [llms.txt](https://docs.vectra.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.vectra.ai/integrations.md).

# Integrations

- [Response](https://docs.vectra.ai/integrations/response.md): Response integration resources for actions, lockdown workflows, endpoint controls, and network controls connected to Vectra AI.
- [Cisco AMP](https://docs.vectra.ai/integrations/response/cisco-amp.md): Vectra GitHub resource for implementing the Cisco AMP response integration with the Vectra Automated Response Framework.
- [Cisco FMC](https://docs.vectra.ai/integrations/response/cisco-fmc.md): Vectra GitHub resource for implementing the Cisco FMC response integration with the Vectra Automated Response Framework.
- [Cisco ISE](https://docs.vectra.ai/integrations/response/cisco-ise.md): Vectra GitHub resource for implementing the Cisco ISE response integration with the Vectra Automated Response Framework.
- [Cisco Meraki](https://docs.vectra.ai/integrations/response/cisco-meraki.md): Vectra GitHub resource for implementing the Cisco Meraki response integration with the Vectra Automated Response Framework.
- [Cisco PxGrid](https://docs.vectra.ai/integrations/response/cisco-pxgrid.md): Vectra GitHub resource for implementing the Cisco PxGrid response integration with the Vectra Automated Response Framework.
- [ClearPass](https://docs.vectra.ai/integrations/response/clearpass.md): Vectra GitHub resource for implementing the ClearPass response integration with the Vectra Automated Response Framework.
- [Endgame](https://docs.vectra.ai/integrations/response/endgame.md): Vectra GitHub resource for implementing the Endgame response integration with the Vectra Automated Response Framework.
- [Fortinet Firewalls (FortiOS)](https://docs.vectra.ai/integrations/response/fortinet-firewalls-fortios.md): Vectra GitHub resource for implementing the Fortinet Firewalls (FortiOS) response integration with the Vectra Automated Response Framework.
- [Harmony](https://docs.vectra.ai/integrations/response/harmony.md): Vectra GitHub resource for implementing the Harmony response integration with the Vectra Automated Response Framework.
- [McAfee EPO](https://docs.vectra.ai/integrations/response/mcafee-epo.md): Vectra GitHub resource for implementing the McAfee EPO response integration with the Vectra Automated Response Framework.
- [Palo Alto Network Cortex](https://docs.vectra.ai/integrations/response/palo-alto-network-cortex.md): Vectra GitHub resource for implementing the Palo Alto Network Cortex response integration with the Vectra Automated Response Framework.
- [Palo Alto Networks Firewalls (Panorama or not)](https://docs.vectra.ai/integrations/response/palo-alto-networks-firewalls.md): Vectra GitHub resource for implementing the Palo Alto Networks Firewalls response integration with the Vectra Automated Response Framework.
- [Pulse Secure NAC](https://docs.vectra.ai/integrations/response/pulse-secure-nac.md): Vectra GitHub resource for implementing the Pulse Secure NAC response integration with the Vectra Automated Response Framework.
- [Sophos Firewall](https://docs.vectra.ai/integrations/response/sophos-firewall.md): Vectra GitHub resource for implementing the Sophos Firewall response integration with the Vectra Automated Response Framework.
- [Static destination IP blocking](https://docs.vectra.ai/integrations/response/static-destination-ip-blocking.md): Vectra GitHub resource for implementing the static destination IP blocking response integration with the Vectra Automated Response Framework.
- [Trend Micro Apex One](https://docs.vectra.ai/integrations/response/trend-micro-apex-one.md): Vectra GitHub resource for implementing the Trend Micro Apex One response integration with the Vectra Automated Response Framework.
- [Trend Micro Cloud One](https://docs.vectra.ai/integrations/response/trend-micro-cloud-one.md): Vectra GitHub resource for implementing the Trend Micro Cloud One response integration with the Vectra Automated Response Framework.
- [Trend Micro Vision One](https://docs.vectra.ai/integrations/response/trend-micro-vision-one.md): Vectra GitHub resource for implementing the Trend Micro Vision One response integration with the Vectra Automated Response Framework.
- [VMware vSphere](https://docs.vectra.ai/integrations/response/vmware-vsphere.md): Vectra GitHub resource for implementing the VMware vSphere response integration with the Vectra Automated Response Framework.
- [WatchGuard](https://docs.vectra.ai/integrations/response/watchguard.md): Vectra GitHub resource for implementing the WatchGuard response integration with the Vectra Automated Response Framework.
- [Windows (direct PowerShell commands to shutdown host)](https://docs.vectra.ai/integrations/response/windows-direct-powershell-commands-to-shutdown-host.md): Vectra GitHub resource for implementing the Windows direct PowerShell commands to shutdown host response integration with the Vectra Automated Response Framework.
- [WithSecure Elements](https://docs.vectra.ai/integrations/response/withsecure-elements.md): Vectra GitHub resource for implementing the WithSecure Elements response integration with the Vectra Automated Response Framework.
- [SOAR](https://docs.vectra.ai/integrations/soar.md): SOAR integration resources for connecting Vectra AI workflows with supported automation platforms.
- [Swimlane](https://docs.vectra.ai/integrations/soar/swimlane.md): External resource for the Swimlane integration.
- [ITSM](https://docs.vectra.ai/integrations/itsm.md): ITSM integration resources for ticketing, CMDB, and related operational workflows connected to Vectra AI.
- [Coverage](https://docs.vectra.ai/integrations/coverage.md): Coverage integration resources for data sources, cloud platforms, sensors, and traffic sources connected to Vectra AI.
- [Honeypot Monitoring](https://docs.vectra.ai/integrations/coverage/monitoring-honeypot-honeytoken-identities.md): Monitor honeypot identities with Vectra Threat Intel to detect activity over RDP, SMB, RPC, NTLM, and Kerberos.
- [Context](https://docs.vectra.ai/integrations/context.md): Context integration resources for enriching Vectra AI entities and detections with external platform details.
- [CrowdStrike EDR process correlation](https://docs.vectra.ai/integrations/context/crowdstrike-edr-process-correlation-user-guide.md): Configure CrowdStrike EDR process correlation to add endpoint process context to network detections.
- [Microsoft Defender EDR process correlation](https://docs.vectra.ai/integrations/context/microsoft-defender-edr-process-correlation-user-guide.md): Configure Microsoft Defender for Endpoint (MDE) process correlation to add endpoint process context to network detections.
- [SIEM](https://docs.vectra.ai/integrations/siem.md): SIEM integration resources for forwarding Vectra AI detections, entity data, and telemetry to security platforms.
- [CrowdStrike Humio/Logscale](https://docs.vectra.ai/integrations/siem/crowdstrike-humio-logscale.md): External resource for the CrowdStrike Humio/Logscale integration.
- [Datadog](https://docs.vectra.ai/integrations/siem/datadog.md): External resource for the Datadog integration.
- [Devo](https://docs.vectra.ai/integrations/siem/devo.md): External resource for the Devo integration.
- [Elastic](https://docs.vectra.ai/integrations/siem/elastic.md): External resource for the Elastic integration.
- [Google Chronicle](https://docs.vectra.ai/integrations/siem/google-chronicle.md): External resource for the Google Chronicle integration.
- [Hunters](https://docs.vectra.ai/integrations/siem/hunters.md): External resource for the Hunters integration.
- [LogPoint](https://docs.vectra.ai/integrations/siem/logpoint.md): External resource for the LogPoint integration.
- [Sekoia](https://docs.vectra.ai/integrations/siem/sekoia.md): External resource for the Sekoia integration.
- [SentinelOne](https://docs.vectra.ai/integrations/siem/sentinelone.md): External resource for the SentinelOne integration.
- [Stellar Cyber OpenXDR](https://docs.vectra.ai/integrations/siem/stellar-cyber-openxdr.md): External resource for the Stellar Cyber OpenXDR integration.
- [Access / Authentication](https://docs.vectra.ai/integrations/access-authentication.md): Access and authentication integration resources for identity providers and external authentication services.
- [Notifications / Data Export](https://docs.vectra.ai/integrations/notifications-data-export.md): Notification and data export integration resources for webhooks, syslog, Kafka, and Stream publishers.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.vectra.ai/integrations.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
