IP Enrichment - Generic
Deprecated. Enrich IP using one or more integrations. IP enrichment includes: * Resolve IP to Hostname (DNS) * Threat information * Separate internal and external addresses * IP reputation * For internal addresses, get host information
- Pack
- DeprecatedContent
- Tasks
- 16
Inputs
- IP — The IP address to enrich.
- InternalRange — The internal range to check against the IP address. The default range is taken from the IPv4 protocol.
- ResolveIP — Convert the IP address to a hostname using a DNS query (True/ False).
Outputs
- IP — The IP objects
- DBotScore — Indicator, Score, Type, Vendor
- Endpoint — The Endpoint's object
- Endpoint.Hostname — The hostname to enrich
- Endpoint.OS — Endpoint OS
- Endpoint.IP — List of endpoint IP addresses
- Endpoint.MAC — List of endpoint MAC addresses
- Endpoint.Domain — Endpoint domain name
Commands used
- vt-private-get-ip-report