greynoise.md
For the complete documentation index, see llms.txt. Markdown versions of documentation pages are available by appending .md to page URLs; this page is available as Markdown.
GreyNoise
{% hint style="info" %} GreyNoise is a Threat Intelligence (TI) integration. TI Data Source integrations are used during investigations to improve analysis and in interactive chat to help answer questions. They are optional, but enabling more tooling integrations enhances Dropzone analysis. {% endhint %}
Dropzone interfaces with GreyNoise to check and report IP addresses that are involved in malicious activity such as spamming, hack attempts, and DDoS attacks.
Create an API Key
GreyNoise requires an API key to configure.
To obtain an API Key, do the following:
- Navigate to your GreyNoise account
- Click on the carrot next to your name in the upper left hand corner
GreyNoise account
- Navigate to "My API Key"
My API Key
- Copy the API Key
Copy API Key
Enable GreyNoise
To enable the Data Source integration, do the following:
- Navigate to your Dropzone AI tenant home page e.g. https://mycompany.dropzone.app
- In the bottom left hand corner, click Settings > Integrations
Integrations Dropdown
- Click "Available"
Click Available
- In the Search bar, search GreyNoise, then click "Configure"
The GreyNoise IPDB Data Tile
- Input the API key
The GreyNoise Data Source Configuration
- Click "Test & Save" to finish
If you have any errors engage your Dropzone AI support representative.