Dig

The Polarity-Dig integration allows an analyst to quickly run the dig command on their Polarity server, enabling analysts to quickly see associated domains, IPs, and headers.

Configuring Dig

This integration requires you to complete a few extra steps in order to use it.

In order to utilize the Polarity Dig integration, a Polarity admin will need to install the bind-utils package via yum.

Configuration Options

Indicator Types - IPs, Domain

Install bind-utils - In order to utilize the Polarity Dig integration, the bind-utils utility needs to be installed on the Polarity Server. A Polarity admin will need to run the following command to install the package: sudo yum install bind-utils -y

**DNS Server **- The DNS server to perform the Polarity lookup against. An analyst can use Google’s DNS server of `8.8.8.8` if none is available. If no DNS server is set the integration will timeout.