---
title: "Setup and Configuration"
canonical: "https://docs.infoblox.com/space/DeploymentGuideInfobloxAppforSentinel/774931075/Setup%20and%20Configuration"
format: markdown
---
## Configuring the Infoblox Cloud Data Connector

1. Go to Microsoft Sentinel Workspace, go to **Data Connectors**, search for the **Infoblox Data Connector. **Click on the **Infoblox Cloud Data Connector via AMA** and click on the **Open connector page**.

![image-20240711-131306.png](media://fc8189f8-26cb-4e85-9046-36aa0a6317dc)

2. This Microsoft Sentinel data connector assumes an Infoblox Data Connector host has already been created and configured in the Infoblox Cloud Services Portal (CSP). As the **[Infoblox Data Connector](https://docs.infoblox.com/display/BloxOneThreatDefense/Deploying+the+Data+Connector+Solution)** is a feature of Threat Defense, access to an appropriate Threat Defense subscription is required. See this **[quick-start guide](https://www.infoblox.com/wp-content/uploads/infoblox-deployment-guide-data-connector.pdf)** for more information and licensing requirements.
3. Go to your Linux machine that you have created to capture syslog data and run the command in step 1.2 of the data connector configuration page to install CEF collector on that machine

![image-20240711-131904.png](media://59076ce8-908c-4972-b1ff-f6de752fa0c6)

4. Configure the traffic flow on Infoblox portal as mentioned in step 2 of the data connector configuration page
5. Validate the connection using the step 3 of the configuration page

![image-20240711-132130.png](media://8cf5adb9-c01f-4c50-ae0b-34c0c7250b6d)

## Configuring the Infoblox SOC Insight Data Connector via REST API

To connect the SOC Insights connector, we need to create and configure the **Infoblox-SOC-Get-Open-Insights-API** playbook which is deployed with this solution. To deploy and configure this  playbook, follow the steps mentioned in the **Configure Playbook** section.  
User needs to manually run the playbook after deployment. To do so, go to **Logic Apps.** Select the **Infoblox-SOC-Get-Open-Insights-API** and click on **Run** button.