Share Threat Intelligence data between TISC instances
You can share threat intelligence data between TISC instances using one of the following methods.
Sharing Methods
- Manual sharing through the user interface (GUI): Manually curate and share intelligence records with a target instance through the TISC interface. For more information, see Sharing of Outbound Intelligence Records from the GUI.
- Automated sharing using flows: Configure flows to automatically share intelligence data to a target instance based on a defined condition. For more information, see Automated Sharing of Outbound Intelligence Records.
- Sharing through a TAXII server: Exchange threat intelligence data through TAXII collections using standardized threat intelligence sharing protocols. For more information, see Exploring TAXII Outbound Server.
Data transfer mechanism
- For Manual sharing via GUI and automated flow based sharing, the source TISC instance pushes the data directly to the target instance.
- For TAXII based sharing, the target TISC instance pulls data from TAXII collections configured on the source instance.