<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Windows Logs src_ip field in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63661#M12804</link>
    <description>&lt;P&gt;Is there a way to add the src_ip Field to windows events?&lt;/P&gt;

&lt;P&gt;Looking for options that do not involve a lookup.&lt;/P&gt;</description>
    <pubDate>Sat, 14 Sep 2013 02:44:36 GMT</pubDate>
    <dc:creator>adrianathome</dc:creator>
    <dc:date>2013-09-14T02:44:36Z</dc:date>
    <item>
      <title>Windows Logs src_ip field</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63661#M12804</link>
      <description>&lt;P&gt;Is there a way to add the src_ip Field to windows events?&lt;/P&gt;

&lt;P&gt;Looking for options that do not involve a lookup.&lt;/P&gt;</description>
      <pubDate>Sat, 14 Sep 2013 02:44:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63661#M12804</guid>
      <dc:creator>adrianathome</dc:creator>
      <dc:date>2013-09-14T02:44:36Z</dc:date>
    </item>
    <item>
      <title>Re: Windows Logs src_ip field</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63662#M12805</link>
      <description>&lt;P&gt;You mean you want to collect and add it to the log events at the time of capture? If so, then short of writing your own input (or modifying the Splunk one) on the forwarder, I can not think of one.&lt;/P&gt;</description>
      <pubDate>Sat, 14 Sep 2013 16:02:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63662#M12805</guid>
      <dc:creator>gkanapathy</dc:creator>
      <dc:date>2013-09-14T16:02:18Z</dc:date>
    </item>
    <item>
      <title>Re: Windows Logs src_ip field</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63663#M12806</link>
      <description>&lt;P&gt;Have you ever seen anybody setting the host=ip on inputs.conf? I wonder if the events themselves always have the hostname or computer name value in them and we can add the IP address via inputs.conf.&lt;/P&gt;</description>
      <pubDate>Mon, 23 Sep 2013 20:28:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Windows-Logs-src-ip-field/m-p/63663#M12806</guid>
      <dc:creator>adrianathome</dc:creator>
      <dc:date>2013-09-23T20:28:36Z</dc:date>
    </item>
  </channel>
</rss>

