Documentation Index

Fetch the complete documentation index at: https://docs.safe.security/llms.txt

Use this file to discover all available pages before exploring further.

Kandji Connector Guide

Prev Next

Kandji is the Apple device management and security platform that empowers secure and productive global work.The Balbix integration with Kandji ingests Apple IT Infrastructure assets, operating system (OS) and software information discovered by Kandji.

Balbix leverages AI to aggregate, normalize, and deduplicate ingested data, along with information integrated from your existing IT and cybersecurity tools. This creates a unified view of your entire asset inventory, including vulnerabilities and their business and operational context. Balbix’s AI models then analyze this data to provide insights such as deployment gap analysis, risk-based vulnerability prioritization (with detailed ranking and scoring), and risk quantification. This process delivers a comprehensive assessment of risk, whether for a single asset, groups of assets, or your entire enterprise, enabling more informed and effective security decisions.

Integration Summary

This table provides a summary of the Balbix integration for the Kandji connector.

Integration Type

Fetch: An inbound API integration used to fetch IT infrastructure assets, OS, and software.

Types of Assets Fetched

Host devices including Apple desktops, laptops, personal phones, tablets.

Types of Data Fetched

Asset names, hardware information, interface information (MAC address, IP address), OS information, software information, system information.

Prerequisites

To configure the Balbix connector, you must first create Kandji API credentials with the appropriate permissions. These credentials are required for completing the configuration process.

  1. Create a User Account: Create a user account in Kandji to generate an API token.

  2. Generate an API Token: Generate the required API token to authenticate the app with Balbix.

Create a User Account

Get access to Kandji by creating a new user account.

  1. Log in to Kandji and click Settings in the left-hand navigation bar.

  2. Select the Access tab.

  3. Click New User on the top right.

  4. Fill in the required fields and select Admin as the access level for the new user.

  5. Click Submit.

  6. Open the email invitation from Kandji and follow the instructions to set up your access. Note that invitations expire after 24 hours.

Create an API Token

Log in with your newly created Kandji account to generate an API token and assign the necessary permissions.

  1. Log in and click Settings in the left-hand navigation bar.

  2. Go to the Access tab and click Add API Token.

  3. Enter a name and description for the API token.

  4. Click Create to generate your API token. A window will appear displaying the token.

  5. Click Copy Token and securely save it for later use when setting up the Kandji connector in Balbix.

    Caution: Be sure to copy and save the token—it will no longer be visible after you leave the page.

  6. Click Next.

  7. In the Manage API Permissions dialog box, click Configure to assign permissions to your API token.

    • In the Devices section, enable the following options for Device List permissions:

      • Device details

      • Device list

      • Device ID

      • Application list

      • Device parameters

  8. Click Save.

Create and Configure the Connector

After you have completed the prerequisites, follow these steps to create and configure your Balbix connector for Kandji.

API References

This section provides comprehensive references for the API version and reference documentation to help you effectively integrate and utilize the API in your system.

API Version

API Documentation

To learn more about the Kandji API, see the references listed below: