[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-09-02。"],[[["\u003cp\u003eIP Address view in Google Security Operations allows users to investigate the presence and impact of specific IP addresses on their enterprise assets.\u003c/p\u003e\n"],["\u003cp\u003eUnlike Asset view, which starts investigations within the enterprise and looks outward, IP Address view begins investigations from outside the enterprise, looking inward.\u003c/p\u003e\n"],["\u003cp\u003eTo access IP Address view, users can search for an IP address in the Google Security Operations interface and select it from the DESTINATIONS IPS menu.\u003c/p\u003e\n"],["\u003cp\u003eProcedural Filtering in IP Address view enables further refinement of information by event type, log source, network connection status, and Top Level Domain (TLD).\u003c/p\u003e\n"]]],[],null,["# Filter data in IP Address view\n==============================\n\nSupported in: \nGoogle secops [SIEM](/chronicle/docs/secops/google-secops-siem-toc)\n\nIP Address view lets you investigate whether or not specific IP addresses\nare present within your enterprise and what impact they might have had on your\nassets.\n\nGoogle Security Operations lets you investigate specific IP addresses to determine if any\nare present within your enterprise and what impact these outside systems might\nhave had on your assets. IP Address view is derived from the same security\ninformation and data that you have forwarded to Google SecOps from your enterprise and\ncan also examine using Asset view.\n\nFrom Asset view, you begin your investigation from within your enterprise and\nlook outward. From IP Address view, you begin your investigation from\noutside your enterprise and look in.\n\nTo access IP Address view in Google SecOps, complete the following steps:\n\n1. Enter the IP address you need to investigate in the search bar at the\n top of the Google SecOps user interface. Click **SEARCH**.\n\n2. Select the IP address from the DESTINATIONS IPS menu. IP Address view is displayed.\n\n3. Click the\n icon in the top right corner of the Google SecOps user interface to open the\n **Procedural Filtering** menu. Procedural\n Filtering lets you further filter information pertaining to an asset,\n including by event type, log source, network connection status, and Top\n Level Domain (TLD).\n\n The following Procedural Filtering options are available in IP Address view:\n - EVENT TYPE\n - LOG SOURCE\n - NETWORK CONNECTION STATUS\n - TLD\n\n**Need more help?** [Get answers from Community members and Google SecOps professionals.](https://security.googlecloudcommunity.com/google-security-operations-2)"]]