Documentation Index

Fetch the complete documentation index at: https://docs.safe.security/llms.txt

Use this file to discover all available pages before exploring further.

Nexthink Connector Guide

Prev Next

Nexthink is an IT solution that provides insights into activity across devices, operating systems, and workplace locations to improve IT experiences for employees. The Balbix integration with Nexthink ingests IT infrastructure assets, software and application information discovered by Nexthink.

Balbix leverages AI to aggregate, normalize, and deduplicate ingested data, along with information integrated from your existing IT and cybersecurity tools. This creates a unified view of your entire asset inventory, including vulnerabilities and their business and operational context. Balbix’s AI models then analyze this data to provide insights such as deployment gap analysis, risk-based vulnerability prioritization (with detailed ranking and scoring), and risk quantification. This process delivers a comprehensive assessment of risk, whether for a single asset, groups of assets, or your entire enterprise, enabling more informed and effective security decisions.

Integration Summary

This table provides a summary of the Balbix integration for the Nexthink connector.

Integration Type

Fetch: An inbound API integration used to fetch Infrastructure assets, software and applications.

Types of Assets Fetched

Host devices including desktops, laptops, applications.

Types of Data Fetched

Asset names, hardware information, interface information (MAC address, IP address), OS information​, system information, application information (e.g., application_id, application_name, known packages, description), all relevant timestamps (e.g., first observed, last observed).

Prerequisites

To configure the Balbix connector, you must first create Nexthink API credentials with the appropriate permissions. These credentials are required for completing the configuration process.

API Access Methods

  • Accounts with Data Privacy set to None (Full Access) and Finder Access enabled can use the NXQL API. Additionally, only users with permissions to edit categories can perform updates through NXQL queries.

  • The default port for connecting to the NXQL API is 1671 for on-premises engines and 443 for engines on the Nexthink Cloud.

Create and Configure the Connector

After you have completed the prerequisites, follow these steps to create and configure your Balbix connector for Nexthink.

Step 1: Select the Connector

Start by selecting a connector using the steps outlined below:

  1. Go to Data Sources from the left navigation bar.

  2. In the Connectors table, click + Add Connector.

  3. Click Select a Connector to Configure to expand the window and view the list of available connectors.

  4. Click the + icon on the Nexthink tile.

  5. Click Next to configure the connector.

Step 2: Configure the Connector

Configure the connector using the steps outlined below:

  1. Fill in the required configuration fields.

    Instance Name

    Nexthink API Base URL

    Nexthink Username

    Enter the username for the user account with the necessary permissions to fetch assets.

    Nexthink Password

    Enter the password for the user account with the necessary permissions to fetch assets.

    Asset Last Seen Days Filter

  2. Click Test Connection.

Step 3: Schedule the Connector

Step 4: Review Connector Details

API Reference Documentation

To learn more about the Nexthink API, see the reference listed below: