<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Host showing IP address not DNS in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29435#M5054</link>
    <description>&lt;P&gt;Hi
I've recently installed Splunk and have set up a couple of our test ESX host to forward syslog data to the Splunk server and they are forwarding the data but under hosts the entry is showing IP address and not DNS name.&lt;/P&gt;

&lt;P&gt;The UDP input is set to DNS and the inputs.conf file shows connection_hosts = DNS.&lt;/P&gt;

&lt;P&gt;How can i get the Hosts to show DNS name and not IP?&lt;/P&gt;

&lt;P&gt;Version is 4.1.6-89596.&lt;/P&gt;

&lt;P&gt;Cheers&lt;/P&gt;</description>
    <pubDate>Thu, 20 Jan 2011 09:23:25 GMT</pubDate>
    <dc:creator>CPMSupport</dc:creator>
    <dc:date>2011-01-20T09:23:25Z</dc:date>
    <item>
      <title>Host showing IP address not DNS</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29435#M5054</link>
      <description>&lt;P&gt;Hi
I've recently installed Splunk and have set up a couple of our test ESX host to forward syslog data to the Splunk server and they are forwarding the data but under hosts the entry is showing IP address and not DNS name.&lt;/P&gt;

&lt;P&gt;The UDP input is set to DNS and the inputs.conf file shows connection_hosts = DNS.&lt;/P&gt;

&lt;P&gt;How can i get the Hosts to show DNS name and not IP?&lt;/P&gt;

&lt;P&gt;Version is 4.1.6-89596.&lt;/P&gt;

&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2011 09:23:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29435#M5054</guid>
      <dc:creator>CPMSupport</dc:creator>
      <dc:date>2011-01-20T09:23:25Z</dc:date>
    </item>
    <item>
      <title>Re: Host showing IP address not DNS</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29436#M5055</link>
      <description>&lt;P&gt;I believe that the &lt;CODE&gt;connection_hosts&lt;/CODE&gt; attribute is reserved for the TCP input only.&lt;/P&gt;

&lt;P&gt;&lt;A href="http://www.splunk.com/base/Documentation/4.1.6/Admin/Inputsconf" rel="nofollow"&gt;http://www.splunk.com/base/Documentation/4.1.6/Admin/Inputsconf&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2011 09:28:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29436#M5055</guid>
      <dc:creator>Lamar</dc:creator>
      <dc:date>2011-01-20T09:28:45Z</dc:date>
    </item>
    <item>
      <title>Re: Host showing IP address not DNS</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29437#M5056</link>
      <description>&lt;P&gt;Is the entry &lt;CODE&gt;connection_hosts&lt;/CODE&gt; or is is &lt;CODE&gt;connection_host&lt;/CODE&gt;? The latter is correct. Is the value &lt;CODE&gt;DNS&lt;/CODE&gt; or is it &lt;CODE&gt;dns&lt;/CODE&gt;? Again, the latter is correct. Both of these settings must be correct for this to work.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2011 09:46:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29437#M5056</guid>
      <dc:creator>gkanapathy</dc:creator>
      <dc:date>2011-01-20T09:46:12Z</dc:date>
    </item>
    <item>
      <title>Re: Host showing IP address not DNS</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29438#M5057</link>
      <description>&lt;P&gt;from the inputs.conf file:&lt;/P&gt;

&lt;P&gt;connection_host = dns&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2011 10:23:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Host-showing-IP-address-not-DNS/m-p/29438#M5057</guid>
      <dc:creator>CPMSupport</dc:creator>
      <dc:date>2011-01-20T10:23:56Z</dc:date>
    </item>
  </channel>
</rss>

