Splunk Search

dnslookup for Ip6

pateld
Explorer

we have some IP6 address and look like "lookup dnslookup " doesn't resolve IP6. Any suggestion?

Thanks

Tags (1)
0 Karma

rafamss
Contributor

Hi pateId,

How do you want see this? In the search or like event action? Because if you want see by search since the 6.0 version Splunk support this. Here how to do that: http://docs.splunk.com/Documentation/Splunk/6.1.3/SearchReference/iplocation, but you can see by event action, could create this for look in the external site for sample.

0 Karma

pateld
Explorer

But iplocation doesn't give any info about host name which is done by dns lookup

Thanks

0 Karma

piebob
Splunk Employee
Splunk Employee

patel, please don't post a comment as an answer. there is a link to 'add comment'. thanks.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...