Skip to main content

Cyware Orchestrate

Vehere Packet Worker

App Vendor: Vehere Inc

App Category: Network Security

Connector version: 1.0.0

API Version: 1.0.0

About App

The Vehere Packet Worker platform helps you transform raw packets into information to draw meaningful insights, explore relationships, determine root-cause and, accelerate detection and Incident Response for networks of any size. This also facilitates efficient resolution of identified security incidents with relevant context, concrete evidence, actionable intelligence, and response workflow integration.

The Vehere Packet Worker app is configured with the Orchestrate application to perform the following actions:

Action Name

Description

Active scan address books

This action retrieves all the active scan address books.

Address book detail session

This action retrieves all the address book details.

Capture network configuration

This action captures the configuration of a network.

DNS lookup

This action runs a DNS lookup against an IP address for a session.

Fetch imported PCAP

This action fetches the list of all imported PCAP files.

Fetch location details

The action retrieves the specified location details.

Fetch network configuration

This action retrieves the configuration of the network.

Get acknowledged alerts

This action retrieves all the acknowledged alerts.

Get capture filters

This action retrieves all the capture filters.

Get rules

This action retrieves all the rules.

Get user

This action retrieves all the users.

Get user roles

This action retrieves user roles.

User details

This action retrieves details of a particular user.

Configuration Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Base URL

Enter the base URL of your Vehere Packet Worker

Text

Optional

Access token

Enter the access token of your Vehere Packet Worker.

Text

Optional

Action: Active scan address book

This action retrieves all the active scan address books.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Machine IP

Enter the machine's IP address.

Example:

"1.1.1.1"

Text

Required

Addressbook ID

Enter the address book ID.

Text

Required

Action: Address book detail session

This action retrieves all the address book details.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Destination IP

Enter the destination IP address.

Example:

"1.1.1.1"

Text

Required

Source IP

Enter the source IP address.

Example:

"1.1.1.1"

Text

Required

Action: Capture network configuration

This action captures the configuration of a network.

Action Input Parameters

This action does not require any input parameter.

Action: DNS lookup

This action runs a DNS lookup against an IP address for a session.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Destination IP

Enter the destination IP address.

Example:

"1.1.1.1"

Text

Required

Source IP

Enter the source IP address.

Example:

"1.1.1.1"

Text

Required

Timefield

Enter the time field.

Text

Required

Index

Enter the index.

Text

Required

Timestamp

Enter the timestamp.

Text

Required

Action: Fetch imported PCAP

This action fetches the list of all imported PCAP files.

Action Input Parameters

This action does not require any input parameter.

Action: Fetch location details

The action retrieves the specified location details.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Node IP

Enter the node IP address.

Example:

"1.1.1.1"

Text

Required

Node type

Enter the node type.

Text

Required

Action: Fetch network configuration

This action retrieves the configuration of the network.

Action Input Parameters

This action does not require any input parameter.

Action: Get acknowledged alerts

This action retrieves all the acknowledged alerts.

Action Input Parameters

This action does not require any input parameter.

Action: Get capture filters

This action retrieves all the capture filters.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

DPI Filter ID

Enter the DPI filter ID.

Text

Required

Action: Get rules

This action retrieves all the rules.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Rule ID

Enter the rule ID.

Text

Optional

Action: Get user

This action retrieves all the users.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

User ID

Enter the user ID.

Text

Optional

Action: Get user roles

This action retrieves user roles.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Role ID

Enter the role ID.

Text

Optional

Action: User details

This action retrieves details of a particular user.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Username

Enter the username to retrieve details.

Text

Required