---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure and enable Shodan integration

# Configure and enable Shodan integration {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Before you use Shodan integration, you must download it from the ServiceNow Store.

## Before you begin

Role required: sn_sec_tisc.admin  
Important:  
The Threat Intelligence Security Center and Whois Observable Enrichment plugins must be installed and active.

Download the Whois integration from the ServiceNow Store and verify you have a valid Whois account before use. For more information see, [Download the integration from the ServiceNow Store](https://servicenow-prod.fluidtopics.net/qGeljAXHdNqRLZ7BfdM03w "Downloading an application from the ServiceNow Store for the first time involves a number of easy steps. Some of the steps are performed on the ServiceNow Store and some in your instance.").

## Procedure

1. Navigate to WorkspacesThreat Intelligence Security CenterIntegrationsEnrichment IntegrationsAll IntegrationsObservable Enrichment.
2. In the Shodan card, select Configure New Enrichment to configure the integration.
3. Complete the Configure New Enrichment form.  
   {#shodan-integration__table_iqf_n4p_tzb__entry__2}

   | Field | Description |
   |-|-|
   | Name | Name for the new enrichment integration. For example, Shodan. |
   | Vendor Name | Name of the vendor. The details of the selected vendor are auto-populated and by default this field will be read only. For example, Shodan. |
   | Integration Type | Type of integration that you selected. For example, Observable Enrichment. |
   | Description | Description for the new enrichment integration. For example, the description for Shodan integration is, Shodan helps you to analyze banner information from connected devices all around the globe. |
   [Table 1. Configure New Enrichment form]

   {#shodan-integration__table_iqf_n4p_tzb}
4. Navigate to the Integration Configuration section.
5. Enter (or paste) the API Key you acquired from the Shodan portal.
6. Select Save to apply the changes.  
   The integration details are validated, and by default the status is inactive.
7. Select Enable to enable the integration.
{#shodan-integration__steps_rbj_3bz_5zb}

## Result

After configuration, Shodan can be selected for performing enrichment on observables in Threat Intelligence Security Center.
**Related tasks**   

* [Configure Observable Enrichment](https://servicenow-prod.fluidtopics.net/F9KQKIHT48CYLWeWMWBMDQ "Enrich one or more observables to identify whether they're associated with known threats. The results are based on the enrichment integrations active in your environment.")

*[\>]: and then


