Register a CrowdStrike OAuth application
Register the CrowdStrike OAuth application to access the CrowdStrike API and to receive a Client ID and Client secret.
Before you begin
The CrowdStrike Integration Hub spoke must be active. For more information, see CrowdStrike spoke.
Role required: CrowdStrike Falcon administrator
Important:
- To use the Sensor Usage APIs, your API client must be assigned the Sensor usage scope with read permissions.
- To use the Look up Hourly Sensor Usage and Look up Weekly Sensor Usage actions, contact your account team to enable the following feature flags:
- Hourly usage data feature flag: This flag must be enabled for your Customer Identification (CID) to view hourly usage data.
- Aggregated usage data feature flag: This flag must be enabled to get aggregated usage data in multi-CID (non-Flight Control) accounts.
Procedure
Log in to Falcon using your admin credentials.
Navigate to Support > API Clients and Keys.
Select Add new API Client.
Provide the client name and description.
Select the appropriate check boxes for the following scopes:
- To use the Look up Active Hosts and Look up Host Details actions, select the Read check box for the Hosts scope.
- To use the Look up Hourly Sensor Usage and Look up Weekly Sensor Usage actions, select the Read check box for the Sensor usage scope
- To use all the supported actions, select the Read check box for both Hosts and Sensor usage scopes.
- Select ADD.
The API client created screen is displayed.
Copy the Client ID and Client secret for later use.