i installed application splunk stream,
Now routers send netflow package to splunk server i can find source destination and port but i don't know that source IP send from which router?
Bump. Same question. How to get source address of sending router into the events. We have several netflow senders, no apparent way to distinguish original sender within the indexed flows.
Please update my questiion.