Hi,
I'm getting varied results in Splunk when I investigate an IP address' location. Splunk might say "Netherlands", while multiple third-party resources might say "Estonia."
With no evidence to say one is right over the other — how frequently does Splunk update their geo cache?
Thanks
... View more