Splunk Enterprise

How to get the ip address of specific host ?

_Raj
Engager

How to get the ip address of specific host ?

Labels (1)
0 Karma
1 Solution

scelikok
SplunkTrust
SplunkTrust

Hi @_Raj,

You can use dnslookup like below. It will ask to DNS for IP resolution and create a new field as host_ip

| lookup dnslookup clienthost as host OUTPUT clientip as host_ip

 

If this reply helps you an upvote and "Accept as Solution" is appreciated.

View solution in original post

splunkreal
Motivator

Works fine, thanks!

* If this helps, please upvote or accept solution if it solved *
0 Karma

scelikok
SplunkTrust
SplunkTrust

Hi @_Raj,

You can use dnslookup like below. It will ask to DNS for IP resolution and create a new field as host_ip

| lookup dnslookup clienthost as host OUTPUT clientip as host_ip

 

If this reply helps you an upvote and "Accept as Solution" is appreciated.
Get Updates on the Splunk Community!

OpenTelemetry for Legacy Apps? Yes, You Can!

This article is a follow-up to my previous article posted on the OpenTelemetry Blog, "Your Critical Legacy App ...

UCC Framework: Discover Developer Toolkit for Building Technology Add-ons

The Next-Gen Toolkit for Splunk Technology Add-on Development The Universal Configuration Console (UCC) ...

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...