Splunk Search

Events from windows and linux without domain name

Wojt3k
Engager

Hello, 

I would like change bare host name to host name with a domain name. According to all articles I have changed the following configuration files using CLI and manual methods: 

./splunk set servername nazwahosta.domena.koncowka,

./splunk set default-hostname

and added to

$Splunk_home/etc/system/local/deploymentclient.conf

[deployment-client]
clientName = host.domain.name

Afterwards - instance name and client name changed into version with domain name but host name didn't.

I am using deployment server and found that someone had a similar problem (but with no solution): Event from add-on Splunk app Windows source withou... - Splunk Community

I bet that the problem lies somewhere in Splunk_TA_windows app props or conf file but can't find where exactly. 

Does anybody know where is the problem?

Have a nice day!

Labels (2)
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Note: This post outlines a proposed architecture and serves as an interest check. If we secure commitments ...