Getting Data In

Hostname and IP address,Hostname and IP to be sent to Splunk

lukessi
Path Finder

Hello,

We are sending data to a 3rd party raw, they want the IP of the sending host not the hostname, does splunk have a meta option for this I can update in transform's or can I get the uni forwarder to pass that information on?

Any help would be great,I have a 3rd party we send data too, who want to have the IP address as well as the DNS name on the raw traffic. Is there a way of getting the uni forwards to send their IP as as there hostname when they send the events to splunk I can then use transforms to overwrite the hostname to a IP.

Cheers

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...