<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Replace host IP address with Name in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707873#M239399</link>
    <description>&lt;P&gt;Does Splunk already know what host name has to be replaced for each ip address? For example, are there some other events, or even the same events, which hold this relationship, or do you have a lookup holding this information?&lt;/P&gt;</description>
    <pubDate>Thu, 02 Jan 2025 11:34:02 GMT</pubDate>
    <dc:creator>ITWhisperer</dc:creator>
    <dc:date>2025-01-02T11:34:02Z</dc:date>
    <item>
      <title>Replace host IP address with Name</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707867#M239396</link>
      <description>&lt;P&gt;Hi Team,&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;Need some help, while running below query I get host IP i.e. 10.65.x.x in Number display visualization but I need to replace with name "xyz"&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;index=network ((host=10.65.x.x) AND ((Interface Ethernet1/50 is *) OR (Interface Ethernet1/49 is *) OR (Interface Ethernet1/3 is *))) | table message_text, host&lt;/LI-CODE&gt;
&lt;P&gt;&lt;BR /&gt;Attached is the screenshot&lt;/P&gt;
&lt;P&gt;Can you assist me what needs to be done to solve this issue.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capt.PNG" style="width: 373px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/33975iBEC1C0915E2A8466/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capt.PNG" alt="Capt.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 15:08:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707867#M239396</guid>
      <dc:creator>cshewalkar</dc:creator>
      <dc:date>2025-01-02T15:08:57Z</dc:date>
    </item>
    <item>
      <title>Re: Replace host IP address with Name</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707869#M239397</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/275248"&gt;@cshewalkar&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Are you looking to change the host value? You can change the value using replace command.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/SplunkCloud/latest/SearchReference/Replace" target="_blank"&gt;https://docs.splunk.com/Documentation/SplunkCloud/latest/SearchReference/Replace&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kiran_panchavat_0-1735814354620.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/33976iEE7264859AE2D0F1/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kiran_panchavat_0-1735814354620.png" alt="kiran_panchavat_0-1735814354620.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="kiran_panchavat_1-1735814374576.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/33977i9F38D5AF35826D99/image-size/medium?v=v2&amp;amp;px=400" role="button" title="kiran_panchavat_1-1735814374576.png" alt="kiran_panchavat_1-1735814374576.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I hope this helps, if any reply helps you, you could add your upvote/karma points to that reply, thanks.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 10:40:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707869#M239397</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-01-02T10:40:43Z</dc:date>
    </item>
    <item>
      <title>Re: Replace host IP address with Name</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707873#M239399</link>
      <description>&lt;P&gt;Does Splunk already know what host name has to be replaced for each ip address? For example, are there some other events, or even the same events, which hold this relationship, or do you have a lookup holding this information?&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 11:34:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707873#M239399</guid>
      <dc:creator>ITWhisperer</dc:creator>
      <dc:date>2025-01-02T11:34:02Z</dc:date>
    </item>
    <item>
      <title>Re: Replace host IP address with Name</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707876#M239401</link>
      <description>&lt;P&gt;Hi Kiran,&lt;BR /&gt;&lt;BR /&gt;Thanks.&lt;/P&gt;&lt;H3&gt;&lt;FONT size="3"&gt;&lt;SPAN class=""&gt;Replace values in an internal field - has solve the problem.&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/H3&gt;</description>
      <pubDate>Thu, 02 Jan 2025 11:56:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707876#M239401</guid>
      <dc:creator>cshewalkar</dc:creator>
      <dc:date>2025-01-02T11:56:31Z</dc:date>
    </item>
    <item>
      <title>Re: Replace host IP address with Name</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707888#M239402</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/275248"&gt;@cshewalkar&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Great man. Happy Splunking!&lt;/P&gt;&lt;P&gt;I hope this helps. If any reply helps you, you could add your upvote/karma points to that reply.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 16:00:37 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Replace-host-IP-address-with-Name/m-p/707888#M239402</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-01-02T16:00:37Z</dc:date>
    </item>
  </channel>
</rss>

