All Apps and Add-ons

Splunk Add-on for Microsoft Azure: Is there a way to rename the host name?

jackgordon
New Member

When polling the server the host is reported as "localhost". Is there anyway to rename this? Perhaps with a lookup or some other method?

0 Karma

adamsaul
Communicator
::$SPLUNKHOME/etc/system/local/inputs.conf
[default]
host = <hostname>

::$SPLUNKHOME/etc/system/local/server.conf
[general]
serverName = <hostname>
pass4SymmKey = $1$foobar

Check the above files and make sure they have the hostname you would like. If you are running on a NIX platform, also check the /etc/hostname file.

0 Karma

jackgordon
New Member

This is in reference to the remote Azure server itself, rather than the Splunk server.

0 Karma

adamsaul
Communicator

Jack,

Sorry for the misunderstanding.

When you say remote Azure server, you mean the instance in which you have deployed the Azure Add-On?
If you are talking about the Add-On, then the files I mentioned above are configuration files you would find on the Splunk Universal Forwarder

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...