Skip to main content

How to generate a new Sophos Client ID and Client Secret

This guide will walk you through the steps to re-onboard your Sophos after the expiry of your Client Secret. If the secret has expired, you must create a new set of API credentials.

Written by Alan Butcher

Prerequisites

To complete this integration, you'll need access to your Sophos Central account (https://central.sophos.com/manage/login) with Super Admin permissions to create a Client ID and Client Secret.

Deleting your integration from Defense.com

  1. Log in to my.defense.com

  2. Open your Integrations Centre dashboard.

  3. Click the View Sophos Integration button.

  4. This will load the Sophos Integration Details page.

  5. Click the Delete Integration button.

  6. Click OK to confirm you want to delete the integration.

Getting the required Credentials

  1. Log in to your Sophos Central Admin account at https://central.sophos.com/manage/login

  2. Go to My Products.

  3. Click General Settings.

  4. Click API Credentials Management.

  5. Click Add Credential and give the credential the name Defense.com Sophos.

  6. Under Role, select Service Principal Super Admin or Service Principal Management from the list and click Add. This generates the credential, together with a Client ID and a Client Secret. Make a note of the values for Client ID and Client Secret, these are required during the integration steps below.

These credentials will expire 36 months (3 years) after they are created. We will send you reminders when they are about to expire.

Completing the integration

  1. Log in to my.defense.com

  2. Open your Integrations Centre dashboard.

  3. Click the Enable Sophos button.

  4. This will launch the Sophos integration wizard.

  5. Click Next.

  6. You will need to enter the following new credentials to continue:

    • Client ID

    • Client Secret

    • Client Expiry

  7. Click Check Credentials to verify the details entered are valid.

  8. If the credentials are valid, we'll check the following permissions:

    • Alerts

    • Scan

    • Isolate

  9. Click Next to proceed.

  10. Click Complete.

That's it! Your Sophos integration is now complete. πŸŽ‰

Did this answer your question?