To onboard a new MuleSoft account into Data Theorem's API security product you must first create a custom role and setup a mulesoft analyzer account that can access your environment.
This account will allow our services to discover and analyze your configuration, resources, and APIs.
Setting up a Custom Role
Login into your MuleSoft Account through the AnypointPlatform portal
Under the title Management Center select Access Management
Note: If you can’t find Access Management then you might not have access to set this up.
Select Roles from the left side menu
Click the Add role button
In the dialog box for the Role Name field enter
DataTheoremAnalyzer
In the dialog box for the Role Description field enter
Data Theorem custom role to analyze and inspect environments
Once the role has been created, Select the API Manager tab under Permissions
Select the environment from the Add environment by name field for the environment you want the analyzer to have access to
Note: You’ll have to do steps 8-10 for each environment you want the analyzer to have access to.
Once an environment has been selected, Select the following permissions from the Select access field
View APIs Configuration
View Contracts
View Policies
After permissions have been selected, Click the Blue Plus Icon on the right hand side
Note: This page should now look something like the following screenshot.
Select the Runtime Manager tab under Permissions in your custom role.
In the first section there is a table with one heading marked as Permissions
select the following permissions from the Select access field.Cloudhub Network Viewer
In the second section there is a table with headings Environment and Permissions
select the environment from the Add environment by name field for the environment you want the analyzer to have access to.Note: You'll have to do steps 13-15 for each environment you want the analyzer to have access to.
Once an environment has been selected, select the following permissions from the Select access field.
Read Alerts
Read Applications
Read Servers
Download Applications
After permissions have been selected, click the Blue Plus Icon on the right hand side.
Next we move on to the Design Center where we have to setup a few more permissions, Select the Design Center tab under Permissions
Select the environment from the Add environment by name field for the environment you want the analyzer to have access to
Note: You’ll have to do steps 17-19 for each environment you want the analyzer to have access to.
Once an environment has been selected, Select the following permissions from the Select access field
Design Center Developer
After permissions have been selected, Click the Blue Plus Icon on the right hand side
Note: This page should now look something like the following screenshot
At this point all permissions have been properly setup!
Proceed to creating the account that will be used by Data Theorem’s integration, as shown below.
Creating Data Theorem’s Account
After creating the custom role we need to create the account that will be used by Data Theorem to access your environment. Once completed, you should have the following information:
Account Username
Account Password
Organization ID
To create the MuleSoft account, open a new tab and:
Login into your MuleSoft Account through the AnypointPlatform portal
Under the title Management Center select Access Management
Note: If you can’t find Access Management then you might not have access to set this up.
Select Users from the left side menu
Click the Invite user button
Note: If this button isn’t available you have to enable non-SSO users.
See Enable non-SSO Users Documentation.
In the dialog box for the Email addresses field enter an email account that you have access to. Make sure to write down the Account Username to use later
For the Role field enter the custom role setup earlier
DataTheoremAnalyzer
Click Send invitation
Once invited you'll need to finish creating the account with the invitation sent. Make sure to write down the Account Password to use later
Once the account is setup we will need the Organization ID this can be found by navigating to the AnypointPlatform portal
Once on the portal you will be redirected to a url that looks like the following
https://anypoint.mulesoft.com/home/organizations/ 1453f13-52b8-4454-86e0-f92f8a6ae6a8
Copy out the bolded portion after https://anypoint.mulesoft.com/home/organizations/ this is your Organization ID
Send the created account credentials to support@securetheorem.com.