Integrate Your AssetsNetworking

Secure a Domain or IP Address with Shodan

Use Mondoo with Shodan to monitor domains and IP addresses for exposed resources.

Mondoo can use Shodan search results to confirm your hosts don't have sensitive resources exposed on the internet.

Prerequisites

  • A Shodan account with a payment method set up
  • Editor or Owner access to the Mondoo space

Add the integration

In the Mondoo App, navigate to the space where you want to add the integration. In the side navigation bar, select Integrations. In the top right, select INSTALL. On the Install Integration page, find the integration you want by browsing a category or searching by name:

  1. Under Network Security, select Shodan.

    The Shodan integration setup form in the Mondoo Console

  2. In Choose an integration name, enter a name that identifies this as a Shodan integration and what it covers.

  3. In Provide your Shodan API token, paste your API key. Find it on your Shodan Account Overview; next to API Key, select Show and copy the value.

    Shodan API key for Mondoo

  4. (Optional) In Configure scan targets (optional), enter the domains (for example, lunalectric.com) or IP addresses (for example, 123.45.67.89) to scan. Separate multiple targets with commas or new lines. If you leave it empty, Mondoo uses Shodan's default query.

  5. (Optional) Under Enable security policies (optional), enable the policies you want Mondoo to score the Shodan results against, such as Mondoo Shodan Security.

  6. (Optional) Under Set Annotations (optional), select + ADD ANNOTATION to add key-value pairs that Mondoo applies to every asset this integration discovers. To learn more, read Annotate assets.

  7. Select START SCANNING.

Once the integration is running, head to the security overview to assess and prioritize the findings.

On this page