Before configuring Identity Threat Detection & Response (ITDR), review the requirements below to ensure your environment is ready.
ThreatDown Subscription
The ITDR add-on must be enabled on each site you want to monitor.
OneView User Requirements
The OneView Global or Site Admin role is required to access and configure ITDR.
Endpoint Requirements
ITDR requires the Endpoint Agent to be deployed across all endpoints with Endpoint Detection and Response (EDR) enabled. This allows it to capture Active Directory telemetry, identity hooks, and security events from your environment.
Supported Identity Sources
At least one cloud identity source is required.
| Identity Source | Requirements |
|---|---|
| Microsoft Entra ID |
|
| Okta |
An Okta Super Administrator account to create a dedicated service account and generate an API token. The service account must be assigned the following roles:
|
Back to ITDR Guide