Splunk Enterprise

Iplocation not giving any results

haripriyasarve1
Explorer

Hi all,

 

I am trying to build a dashboard to show from where the client geographically accessed the splunk web UI. Unfortunately when I use iplocation command it is returning fields country, city but not any values. Please help out. 
I checked my $splunkhone/share directory, data base is available there.

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

If the IP address doesn't exist in the database (such as with internal addresses like 10.0.0.0/8) then no results will be returned by iplocation.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...