All Apps and Add-ons

Splunk App for Stream DNS Lookup: How are other users resolving the src_ip and dest_ip fields native to the app with actual hostnames?

rmsit
Communicator

Hello, all.

I wanted to know if others are resolving the src_ip and dest_ip fields native to the app with actual hostnames? If so, how is it done? External lookup command built into Splunk using the external_lookup.py script?

Thanks.

0 Karma
1 Solution

rmsit
Communicator

I figured it out. The external lookup script works.

View solution in original post

0 Karma

rmsit
Communicator

I figured it out. The external lookup script works.

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...