Hello,
We are sending data to a 3rd party raw, they want the IP of the sending host not the hostname, does splunk have a meta option for this I can update in transform's or can I get the uni forwarder to pass that information on?
Any help would be great,I have a 3rd party we send data too, who want to have the IP address as well as the DNS name on the raw traffic. Is there a way of getting the uni forwards to send their IP as as there hostname when they send the events to splunk I can then use transforms to overwrite the hostname to a IP.
Cheers