Getting Data In

displays multiple hostname in search result

Explorer

Good day!can someone help me, i am newbie here in splunk..i just dont understand why splunk displays same hostname in search result but the other one has a suffix domain.

i.e.:

hostname1

hostname1.domain.com

0 Karma

Builder

try host= in inputs.conf in forwarder side and just check you are getting single host or not

0 Karma