Splunk Enterprise

How to change host = hostname to host = IP in search data

spl_stu
Explorer

Please help answer this question, thank you:

All the host values of the data I access now are the host names. I want to change all the host names to IP. How can I do this?
For example, host = Splunk is changed to host = 192.168.3.1
There are many hosts to be modified, so is there any configuration to be pushed uniformly by the deployment server?

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...

New Articles from Academic Learning Partners, Help Expand Lantern’s Use Case Library, ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...