Open navigation

What is a Maltego Standard Transforms On-premise Server (CTAS)?

Modified on: Thu, 2 Feb, 2023 at 1:57 PM

A CTAS is a special server which hosts all of Paterva’s OSINT Transforms and executes these when requested through the Maltego Desktop Client.


CTAS stands for Commercial Transform Application Server.


The CTAS  includes Transforms for gathering OSINT from common sources on the Internet. This includes querying DNS servers, search engines, social networks, various APIs, and other sources. A full list of the Transforms included with CTAS can be found in our Transform guide here.


CTAS Transforms query the following data sources:

  • DNS Servers,
  • Search Engines,
  • Online Databases,
  • Social Networks (Flickr, Myspace),
  • Online APIs,
  • Other Public Sources.


A Private CTAS allows you to host all Paterva’s OSINT Transforms from within your organization. A private CTAS is almost an exact copy of Paterva’s public CTAS except it can be hosted internally within your organization. This is specifically applicable to clients who prefer that their data does not travel over Maltego's infrastructure.


Why use a Private CTAS?

Out-of-the-box Maltego Desktop Clients use Paterva’s public CTAS to run Transforms that are located on the Internet and used by other Maltego users. A private CTAS is for customers performing sensitive investigations where their preference is to keep their Transform requests private. Although Paterva will never log the questions asked, nor their answers, when a Transform query is run on our public server, some customers still prefer the peace of mind provided by hosting their own copy of our CTAS. You can see what is logged when a Transform is run on Paterva's public Transform servers here.

A private CTAS also includes a management console where the server status can be viewed as well as other basic server configurations that can be performed.


Technical Details

  • CTAS is now delivered in two methods:
    • as a docker image.
    • as a VM image in OVA format which is pre-configured with docker containers. If you want to use the image with other virtual machine providers, you will need to convert it using the respective converters.
  • The server is delivered as a virtual format that is downloaded on to a computer and no hardware is included.
  • The docker image of the server is a snapshot of container built on an Ubuntu 16.04 LTS base.
  • The VM image in OVA format is built on Ubuntu 18.04 LTS base providing a hassle-free deployment of the docker containers in a hypervisor.
  • The search engine Transforms use the Bing Web-Search API & IBM Transforms use IBM Watson API. These are paid-for services that are priced (by Microsoft & IBM) according to use. Server administrators should apply for their own API keys as these are not included in the default server image.


  • Hardware Requirements:
    • The virtual server requires at least 2GB of RAM
    • Any modern multi-core processor
    • A minimum 25GB of storage space


  • Network Requirements:
    • The CTAS requires Internet access because the Transforms running on the server will need to make connections to various online services.
    • CTAS needs the following outgoing ports to be open: 80, 443, 25, and others (data provider specific). This list will increase in the future as more Transforms are created and we recommend that you do not limit the server from making outgoing connections to the Internet.
    • Incoming connections need only to be on TCP port 443 and from the various clients IP addresses that wish to use the server.


Maltego Standard Transform Server integrations requiring API Keys


NOTE: These listings are valid only for the Maltego Standard Transform (CTAS) Server version 3.1.3 


1. Legacy Transforms

Documentation for the Legacy Transforms can be found here.

 

Maltego's Standard Transform Server comes with several Transforms which require you to enter your own API keys or credentials to enable those Transforms to run. The following API keys would be required:


a. Bing Search Service API     

All search engine-based Transforms use Bing Web Search API. Enter your Bing Web Search API key in the Bing API Key field in order to use the web search-based Transforms. 

 

Sign up for a Bing Search API key here.

 

b. IBM Watson API 

Several CTAS Transforms use the IBM Natural Language Understanding API to extract Entities from text and analyze sentiments of sentence(s). Enter your API Key in order to run Transforms based on IBM Natural Language Understanding API. 

 

Sign up for an IBM Watson API key here.

 

c. Robtex API 

The Robtex Transforms make use of an API Key which is currently included in the server. No input from the customer is required.  

  

2. Maltego BuiltWith Transforms

Documentation for the Maltego BuiltWith Transforms can be found here.

 

Maltego Standard Transform Server integrations which do not require API Keys


NOTE: These listings are valid only for the Maltego Standard Transform (CTAS) Server version 3.1.3 


The following integrations for the Maltego Standard Transform Server do not require API keys:


3. Wayback Transforms

Documentation for the Wayback Transforms can be found here.


4. Maltego Property Transforms

Documentation for the Maltego Property Transforms can be found here.


5. Maltego Http Transforms

Documentation for the Maltego Http Transforms can be found here.


6. Wikipedia Transforms

Documentation for the Wikipedia Transforms can be found here.


7. PGP Transforms

Documentation for the PGP Transforms can be found here.


 

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.