<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: change host name in nmon_data in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439514#M94395</link>
    <description>&lt;P&gt;For sourcetype nmon_data, the host names is overridden based on host name coming in the raw data (look at transforms.conf in /dbdata1/splunkforwarder/etc/apps/TA-nmon/default/transforms.conf), thus your override setting and not taking place there.&lt;/P&gt;

&lt;P&gt;Also, when you want to make a change to app's config, do in local directory (TA-nmon/local, by creating the directory and creating a copy of that config file. That way your changes will remain intact, even after upgrade.&lt;/P&gt;</description>
    <pubDate>Mon, 16 Jul 2018 18:17:13 GMT</pubDate>
    <dc:creator>somesoni2</dc:creator>
    <dc:date>2018-07-16T18:17:13Z</dc:date>
    <item>
      <title>change host name in nmon_data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439513#M94394</link>
      <description>&lt;P&gt;Hello&lt;BR /&gt;
I want to change host name in TA-nmon and I have set the value of override_sys_hostname in /dbdata1/splunkforwarder/etc/apps/TA-nmon/default/nmon.conf to 1 and I have defined host value in $SPLUNK_HOME/etc/system/local/inputs.conf, but host name does not change for nmon_data and it only chenges for nmon_collect sourcetype, I have searched a lot but I couldn't find anything, can any one help me?&lt;BR /&gt;
I have used last version of TA-nmon from &lt;A href="https://splunkbase.splunk.com/app/3248/" target="_blank"&gt;https://splunkbase.splunk.com/app/3248/&lt;/A&gt;. &lt;BR /&gt;
Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 20:27:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439513#M94394</guid>
      <dc:creator>khmohammadzadeh</dc:creator>
      <dc:date>2020-09-29T20:27:27Z</dc:date>
    </item>
    <item>
      <title>Re: change host name in nmon_data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439514#M94395</link>
      <description>&lt;P&gt;For sourcetype nmon_data, the host names is overridden based on host name coming in the raw data (look at transforms.conf in /dbdata1/splunkforwarder/etc/apps/TA-nmon/default/transforms.conf), thus your override setting and not taking place there.&lt;/P&gt;

&lt;P&gt;Also, when you want to make a change to app's config, do in local directory (TA-nmon/local, by creating the directory and creating a copy of that config file. That way your changes will remain intact, even after upgrade.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jul 2018 18:17:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439514#M94395</guid>
      <dc:creator>somesoni2</dc:creator>
      <dc:date>2018-07-16T18:17:13Z</dc:date>
    </item>
    <item>
      <title>Re: change host name in nmon_data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439515#M94396</link>
      <description>&lt;P&gt;So isn't it possible to change host name for nmon_data?&lt;BR /&gt;
Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jul 2018 12:22:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439515#M94396</guid>
      <dc:creator>khmohammadzadeh</dc:creator>
      <dc:date>2018-07-17T12:22:19Z</dc:date>
    </item>
    <item>
      <title>Re: change host name in nmon_data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439516#M94397</link>
      <description>&lt;P&gt;Your have an All-In-One configuration AND the data source on the same system?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jul 2018 12:37:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439516#M94397</guid>
      <dc:creator>rvany</dc:creator>
      <dc:date>2018-07-17T12:37:48Z</dc:date>
    </item>
    <item>
      <title>Re: change host name in nmon_data</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439517#M94398</link>
      <description>&lt;P&gt;Might be worth tagging your post as relevant to Nmon or the newer Metricator so the app owner can respond&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jul 2018 23:39:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/change-host-name-in-nmon-data/m-p/439517#M94398</guid>
      <dc:creator>gjanders</dc:creator>
      <dc:date>2018-07-17T23:39:20Z</dc:date>
    </item>
  </channel>
</rss>

