All Apps and Add-ons

External search command 'geoip' returned error code 1

williamavila12
Explorer

What does this error code means?

I recently installed GoogleMaps app and updated $SPLUNK_HOME/apps/maps/lib with the DB11 CSV file I downloaded in IPInfoDB site.

When I tried this search command - "error_code="710003" | geoip clientip" it gave me the above error code.

1 Solution

ziegfried
Influencer

The current geoip command does not work with the new format of the ipinfodb database. Since they also changed their terms there will be a new version soon which leverages the GeoCity Light database from Maxmind.

View solution in original post

I-Man
Communicator

I experienced this issue when i moved the app over from a windows to Linux environment. To fix, i simply re-installed the app and everything started running smoothly.

0 Karma

ziegfried
Influencer

The current geoip command does not work with the new format of the ipinfodb database. Since they also changed their terms there will be a new version soon which leverages the GeoCity Light database from Maxmind.

Michael
Contributor

timewarp!
2014 -- same error, I just updated to Splunk 6.1.0 and geoip broke!

Love that app, hope it's updated soon...

0 Karma

williamavila12
Explorer

Hi Ziegfried,

Forgive me for this late response...will install the latest release now... thank you so much, really appreciate.

0 Karma

ziegfried
Influencer

Yes, the new version is now released and the geoip command should be way more stable.

0 Karma

vbumgarner
Contributor

Any update on this? The answer says 06 Apr. I'm assuming that's 2011?

0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...