Splunk Search

How to find out one of the host of ip adresses?

phanichintha
Path Finder

what is the command to find out one of the host name of Ip adress.

Tags (1)

FrankVl
Ultra Champion

Splunk has a built in 'external lookup' called dnslookup that you can use (assuming the address you want to lookup is in a field called ipAddress): | lookup dnslookup clientip as ipAddress

See also: https://docs.splunk.com/Documentation/Splunk/latest/Knowledge/DefineanexternallookupinSplunkWeb#Exte...

0 Karma

jawaharas
Motivator
  1. Install the 'dnslookup' app - https://splunkbase.splunk.com/app/1535/
  2. Get host name of ip using below command

| dnslookup reverse ip host

0 Karma

FrankVl
Ultra Champion

No need to install a 6y old app for that. This functionality is built in nowadays 🙂

0 Karma

jawaharas
Motivator

Thanks. This also works.

0 Karma
Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...