---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# (Optional) Install and configure Whois

# (Optional) Install and configure Whois {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Install the Whois plugin to
provide additional enrichment information on your domain lookups from the Reverse Whois API. This lookup provides
additional enrichment data on the domain, such as the registration date, name of registrar,
and country of origin.

## Before you begin

1. If you have not requested entitlement for the application, see [Get entitlement for a Security Operations product or application](https://servicenow-prod.fluidtopics.net/ZZVMDPCDs~BwBGv0OAhjuA "The first step in installing a Security Operations application is to verify that the application or the product and its associated applications have valid ServiceNow entitlements.") for the Whois application from the ServiceNow Store.
2. Obtain credentials for the Whois API key from the product website: [WHOIS API website](https://whoisapi.whoisxmlapi.com/).
{#whois-install-and-config__ol_lfx_5nr_cdb}Role required: admin

## Procedure

1. If you have not installed the application, see [Install a Security Operations integration](https://servicenow-prod.fluidtopics.net/dIzJWROPdytPu1FmtvPx3w "All ServiceNow integrations are available on the ServiceNow Store. Core applications, such as Security Incident Response, are visible in the ServiceNow Products tab on the store. Integration add-ons are visible in the Certified Apps tab.") and follow the steps to install it.
2. After the installation completes, navigate to IntegrationsIntegrations Configurations and locate the Whois API tile.
3. Select Configure.  
4. In the Whois API Configuration dialog box, enter the API key you obtained from the product website.  
5. Select Submit.  
   Configuration is successfully completed unless an error message is displayed. You can now run enrichment lookups on the domains returned from the Reverse Whois integration.
{#whois-install-and-config__steps_czr_45n_32b} If an error message is displayed, the API key may be invalid.Figure 1. Troubleshooting
**Previous topic:** [Install and configure Reverse Whois](https://servicenow-prod.fluidtopics.net/pIAQjImaUlBNtUXmMBRPYA "Before you run the integration on your instance, complete the installation and configuration steps so the Reverse Whois application properly integrates with the Security Operations product.")  
**Next topic:** [Initiate the lookup for Reverse Whois](https://servicenow-prod.fluidtopics.net/bSFwltLXq1vy4yvVDgcBOg "Initiate domain lookups using search terms in observables that you manually attach to a security incident record.")

*[\>]: and then


