Running a Tools Command
To run a tools command:
-
On a grid view, select an IP address.
-
Right-click and select Tools, then select one of the tool options described here:
Tool Options Tree
Icon
Resource
Network Model
Configure the network model. This button launches the Network Model wizard.
Use Case
Configure a use case.
Instructions are in the documentation that comes with each optional Security Use
Case.Send Logs
Access this from the Tools > Send Logs menu. Start the Send Logs wizard to gather logs and diagnostic information. Logs and diagnostics can be collected for all or a selected set of ArcSight components. (See Send Logs.)
Local Commands:
Nslookup (Windows)
Resolve an IP address to a host or domain name, or vice versa. Run the command on the Console on Windows.
Nslookup (Linux) Resolve an IPv4 address to a host or domain name, or vice versa. Run the command on the Console on Linux. Nslookup-IPv6 (Linux) Resolve an IPv6 address to a host or domain name or vice versa. Run the command on the Console on Linux. Ping (Windows)
Determine if an IP address in the selected cell is reachable on the network. Test and debug a network by sending a packet and waiting for a response.
Ping (Linux) Determine if an IPv4 address in the selected cell is reachable on the network. Test and debug a network by sending a packet and waiting for a response. Run the command from a Console on Linux. Ping6 (Linux) Determine if an IPv6 address in the selected cell is reachable on the network. Test and debug a network by sending a packet and waiting for a response. Run the command from a Console on Linux. Portinfo (Windows)
List standard usage, for example, WWW, FTP, and so on for a specified port number.
Portinfo (Linux) Find information about the selected port. Run the command from a Console on Linux. Traceroute (Windows)
Show the path from the Console to the IP address selected in the grid view, reporting the IP addresses of all routers in between.
Traceroute (Linux) Show the path taken by packets across an IP network. Run from a Console on Linux. WebSearch
Search the Web through Google to find links to the keywords present in currently selected active channel grid view cells.
Whois (Windows)
Look up the owner of a given domain name or an IP address; information might include addresses and telephone numbers.
Whois (Linux) Look up the owner of a given domain name or an IP address; information might include addresses and telephone numbers. Run the command from a Console on Linux. -
Based on the tool selected, a window appears with the information.
-
In the window, click Close.