Please advise on the optimal solution for this business task. I have a set of events with the following fields:
city: Almaty
country: KZ
latitude: 43.2433
longitude: 76.8646
region: Almaty
What would be the best approach to obtain the field indicating the local time of these events using the provided information?
MaxMind offer a database you download to map lat/long to time zone, among other fields. The database can replace that used by Splunk for the iplocation command or you can use the CSV version of the DB as a separate lookup table. A subscription may be required. See https://www.maxmind.com/en/geoip-databases