Hi, i am trying to solve issue I encountered with enterprise security. Our company has webserver that is accessible from internal network and from internet. It uses two IP addresses (internal and external). I haven't find the way how to enter both IP addresses for this asset to show them in Asset Investigator. If I enter it pipe separated or dot separated it doesn't help. I have tried with duplicating this asset with different IP address, but it doesn't do the trick as well. Is there any other workaround for this issue?
Hi, multi-homed hosts like that require a different technique: http://docs.splunk.com/Documentation/ES/3.1.1/Install/IdentityManager#Define_multi-homed_hosts