To enable communication between QRadar and Salesforce, configure
an External Client App in the Salesforce console and collect the authentication details generated by
the application. These details are required when configuring the QRadar log source.
Before you begin
If the RESTful API isn’t enabled on your Salesforce server, contact Salesforce
support.
Procedure
-
Configure a Salesforce External Client App for Client Credential Flow.
-
Log in to your Salesforce Security Monitoring server.
-
Go to .
- Provide the following information such as External Client App name, API name, contact
email address, and other required fields.
-
Select Enable OAuth Settings and enable OAuth
option.
-
Under App Settings, configure the Callback URL. Enter a URL where users can be
redirected for more information about the application. For example: https://login.salesforce.com/
https://login.salesforce.com/
-
From the Selected OAuth Scopes list, select Manage user data
via APIs (api)
-
Configure any remaining optional parameters as required
-
Under Flow Enablement, select Enable Client Credentials
Flow.
-
Click Save/Create to create the External Client App
-
Configure OAuth policies and Run As (Username) for the Salesforce
External Client App.
- Go to .
- Open the previously created External Client
App.
- Click the Policies tab, then click
Edit.
-
Under App policies, select OAuth.
-
From the Entitlement Management Settings window, select the
Enable Entitlement Management check box.
-
Under OAuth Policies, set Permitted Users to
All users can self-authorize.
- Under OAuth Flows and External Client App Enhancements, select
Enable Client Credentials Flow.
-
In the Run As (Username) field, select the Salesforce user that the
Client Credentials Flow will use.
In some Salesforce UI versions, this field is displayed as Execution
User.
- Configure any remaining optional parameters as required.
-
Click Save.
What to do next
To get the Consumer Key and Secret Key, complete the following steps:
- From the navigation menu, go to .
- Open the previously created External Client App.
- Click the Settings tab.
- Expand OAuth Settings.
- Under App Settings, click Consumer Key and Secret.
If prompted, enter the required verification code.
- On the Consumer Details page, note the Consumer Key
and Consumer Secret values.