Typical activities for which you might build and run commands in the ArcSight Console that connect to other applications and tools include:
Launch third-party Web interfaces
Launch scripts
Run external searches
View submitted tickets
Get Asset/Vulnerability information
Get Payload Information
You can set up context-aware commands to third-party applications and custom scripts. With command configurations, you can make these available in specified ArcSight Console views and use particular fields as parameters to your commands.
ESM ships with standard utilities configured to be available in ArcSight Console views. For example, the ping command is available in grid views such as active channels, lists, and query viewers, and takes as a parameter the IP address or host name in the selected event.
For information on integrating basic network tools such as Ping, Nslookup, or ArcSight specific Send Logs, see Using the Network Tools and Network Tools as Integration Commands.