Splunk Search

Why does my Geomap not work?

rkris
Explorer

 

I'm trying to display the city and country name for all these IP Addesses which I extracted from my windows log file after uploading it into splunk

splunk_qns6_p1.PNG

However, I do not get the results that I want. Is there a fix for this?

Labels (3)
Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust
CSV files may only have a single header. All rows below the header are expected to have the same number of fields.
Consider writing each event type to a different CSV.
Another option is to use a single file, but in a different format such as key=value or JSON.
---
If this reply helps you, Karma would be appreciated.
0 Karma

richgalloway
SplunkTrust
SplunkTrust
The Maxmind database does not have information about internal (10.* and 192.168.*) IP addresses. You'll have to locate those addresses yourself since only your company knows where they are.
---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk App for Anomaly Detection End of Life Announcment

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...