Is it possible in inputs.conf in windows machine to use
host=$
I tried using: host=$computername
but in the indexer the events show 'host=$computername' and not the value of $computername
host = $COMPUTERNAME worked for me on the Windows Splunk 5.0.4 Universal Forwarder.