<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic HTTP EVENT Collector - HttpAppender - how to add hostname in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/HTTP-EVENT-Collector-HttpAppender-how-to-add-hostname/m-p/555372#M6105</link>
    <description>&lt;P&gt;${hostName} variable used in below line should provide required value for Host.&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;&amp;lt;Property name="Host" value="${hostName}"&amp;gt;&amp;lt;/Property&amp;gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Reference from Log4j documentation:&lt;BR /&gt;&amp;nbsp;"The default map is pre-populated with a value for "hostName" that is the current system's host name or IP address"&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://logging.apache.org/log4j/2.x/manual/configuration.html" target="_blank" rel="noopener"&gt;https://logging.apache.org/log4j/2.x/manual/configuration.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 10 Jun 2021 19:25:39 GMT</pubDate>
    <dc:creator>rupkumar4sec</dc:creator>
    <dc:date>2021-06-10T19:25:39Z</dc:date>
    <item>
      <title>HTTP EVENT Collector - HttpAppender - how to add hostname</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/HTTP-EVENT-Collector-HttpAppender-how-to-add-hostname/m-p/555290#M6095</link>
      <description>&lt;P&gt;Dear All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am new to Splunk, and we are using log4j2 configuration file with HttpAppender to send logs , but I am not able to add Host name.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is what I use:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;&amp;lt;Http name="Splunk-New" url="http://host:8088/services/collector/raw"&amp;gt;
                        &amp;lt;Property name="Authorization" value="Splunk token"&amp;gt;&amp;lt;/Property&amp;gt;
                        &amp;lt;Property name="Host" value="${hostName}"&amp;gt;&amp;lt;/Property&amp;gt;
                        &amp;lt;PatternLayout pattern="%-5p %d [%t] [event: %X{correlationId}] %c: %m%n"&amp;gt;&amp;lt;/PatternLayout&amp;gt;
                &amp;lt;/Http&amp;gt;&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Jun 2021 11:30:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/HTTP-EVENT-Collector-HttpAppender-how-to-add-hostname/m-p/555290#M6095</guid>
      <dc:creator>dsvasani</dc:creator>
      <dc:date>2021-06-10T11:30:40Z</dc:date>
    </item>
    <item>
      <title>HTTP EVENT Collector - HttpAppender - how to add hostname</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/HTTP-EVENT-Collector-HttpAppender-how-to-add-hostname/m-p/555372#M6105</link>
      <description>&lt;P&gt;${hostName} variable used in below line should provide required value for Host.&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;&amp;lt;Property name="Host" value="${hostName}"&amp;gt;&amp;lt;/Property&amp;gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Reference from Log4j documentation:&lt;BR /&gt;&amp;nbsp;"The default map is pre-populated with a value for "hostName" that is the current system's host name or IP address"&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://logging.apache.org/log4j/2.x/manual/configuration.html" target="_blank" rel="noopener"&gt;https://logging.apache.org/log4j/2.x/manual/configuration.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Jun 2021 19:25:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/HTTP-EVENT-Collector-HttpAppender-how-to-add-hostname/m-p/555372#M6105</guid>
      <dc:creator>rupkumar4sec</dc:creator>
      <dc:date>2021-06-10T19:25:39Z</dc:date>
    </item>
  </channel>
</rss>

