All Apps and Add-ons

Automatically Convert IP-to-Name in host field?

jordanperks
Path Finder

In most of my host fields today I have something like host=192.168.1.254. I would like Splunk to automatically query DNS and switch that IP to the hostname in DNS. Instead of "host=192.168.1.254" it would read "host=First-Floor-FileServer". I know there is a way to manually transform them, but if there was an automated way to do it, that would be preferable.

0 Karma

elvisior
Explorer

Have you had a look at my app (apologies for the shameless self promotion):

http://splunk-base.splunk.com/apps/88316/dnslookup

It doesn't quite do what you're asking but it is close.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

From Raw Data to Executive-Ready Stories, Faster

Build Data Stories for Every Audience  A dashboard is rarely just a dashboard. It might be the view an ...

Guided Onboarding with Auto-schema Is Now Generally Available

  We are excited to announce the General Availability of Guided Onboarding with Auto-Schematization ...

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...