Splunk Enterprise

How to get the ip address of specific host ?

_Raj
Engager

How to get the ip address of specific host ?

Labels (1)
0 Karma
1 Solution

scelikok
SplunkTrust
SplunkTrust

Hi @_Raj,

You can use dnslookup like below. It will ask to DNS for IP resolution and create a new field as host_ip

| lookup dnslookup clienthost as host OUTPUT clientip as host_ip

 

If this reply helps you an upvote and "Accept as Solution" is appreciated.

View solution in original post

splunkreal
Motivator

Works fine, thanks!

* If this helps, please upvote or accept solution if it solved *
0 Karma

scelikok
SplunkTrust
SplunkTrust

Hi @_Raj,

You can use dnslookup like below. It will ask to DNS for IP resolution and create a new field as host_ip

| lookup dnslookup clienthost as host OUTPUT clientip as host_ip

 

If this reply helps you an upvote and "Accept as Solution" is appreciated.
Get Updates on the Splunk Community!

CX Day is Coming!

Customer Experience (CX) Day is on October 7th!! We're so excited to bring back another day full of wonderful ...

Strengthen Your Future: A Look Back at Splunk 10 Innovations and .conf25 Highlights!

The Big One: Splunk 10 is Here!  The moment many of you have been waiting for has arrived! We are thrilled to ...

Now Offering the AI Assistant Usage Dashboard in Cloud Monitoring Console

Today, we’re excited to announce the release of a brand new AI assistant usage dashboard in Cloud Monitoring ...