title | description | ms.date | ms.topic |
---|---|---|---|
Connect Citrix ShareFile | Microsoft Defender for Cloud Apps |
This article provides information about how to connect your Citrix ShareFile app to Defender for Cloud Apps using the API connector for visibility and control over use. |
12/12/2023 |
how-to |
Citrix ShareFile is a secure content collaboration, file sharing and sync solution that supports all the document-centric tasks and workflow needs of small and large businesses. Citrix ShareFile holds critical data of your organization, and this makes it a target for malicious actors.
Connecting Citrix ShareFile to Defender for Cloud Apps gives you improved insights into your users' activities and provides threat detection using machine learning based anomaly detections.
[!INCLUDE security-posture-management-connector]
- Compromised accounts and insider threats
- Data leakage
- Insufficient security awareness
- Unmanaged bring your own device (BYOD)
-
Detect cloud threats, compromised accounts, and malicious insiders
-
Use the audit trail of activities for forensic investigations
To see security posture recommendations for Citrix Share File in Microsoft Secure Score, create an API connector via the Connectors tab, with Owner and Enterprise permissions. In Secure Score, select Recommended actions and filter by Product = CitrixSF.
For example, recommendations for Citrix Share File include:
- Enable multi-factor authentication (MFA)
- Enable single sign on (SSO)
- Enable session timeout for web users
If a connector already exists and you don't see Citrix Share File recommendations yet, refresh the connection by disconnecting the API connector, and then reconnecting it with the Access Company account permissions.
For more information, see:
The Citrix Share file user used for logging into Citrix Share file must have Access Company account permissions.
-
Go to ShareFile API Documentation, and sign in to your organization account.
-
Select Get an API Key.
-
To generate API keys (Client ID and Client Secret), go to Create New.
-
Fill out the following fields:
-
Application name: Microsoft Defender for Cloud Apps (you can also choose another name).
-
Redirect URL:
https://portal.cloudappsecurity.com/api/oauth/saga
.For US Government GCC customers, enter
https://portal.cloudappsecuritygov.com/api/oauth/saga
as the redirect URL.For US Government GCC High customers, enter
https://portal.cloudappsecurity.us/api/oauth/saga
as the redirect URL.
-
-
Select Generate API Key.
-
Copy the Client ID and Client Secret.
-
In the Microsoft Defender Portal, select Settings. Then choose Cloud Apps. Under Connected apps, select App Connectors.
-
In the App connectors page, select +Connect an app, followed by Citrix ShareFile.
-
In the pop-up, give the connector a descriptive name, and select Connect Citrix ShareFile.
-
In the next screen, enter the following fields:
- The Client ID and Client Secret that you created in the Citrix ShareFile API portal.
- Client Subdomain: Enter your account's subdomain. For example, if your account's URL is "mycompany.sharefile.com", you would enter "mycompany".
-
Select Connect in Citrix ShareFile.
-
In the Microsoft Defender Portal, select Settings. Then choose Cloud Apps. Under Connected apps, select App Connectors. Make sure the status of the connected App Connector is Connected.
The default rate limit is 420 requests per minute.
[!div class="nextstepaction"] Control cloud apps with policies
[!INCLUDE Open support ticket]