This doesn't returns anything:
| stats c | eval ip="107.181.233.178" | iplocation ip allfields=1 | table ip, Country, Region, City
likely due to iplocation's usage of limited geoip DB?
Is there a way (perhaps for an extra fee?) to plug into Splunk more robust and rich IP location and assignment resolution capabilities?
You should reference this already answered question which will be what you need...
http://answers.splunk.com/answers/123430/how-to-update-geoip-database-for-iplocation-command.html
Thanks much, that thread is a good info.
Gleb
No problem, dont forget to mark the question as answered. Cheers.