Hi all,
I am trying to build a dashboard to show from where the client geographically accessed the splunk web UI. Unfortunately when I use iplocation command it is returning fields country, city but not any values. Please help out.
I checked my $splunkhone/share directory, data base is available there.
If the IP address doesn't exist in the database (such as with internal addresses like 10.0.0.0/8) then no results will be returned by iplocation.