The venerable old-skool Splunk forums are now closed. Feel free to search for old content here, but new posts are no longer supported.

Instead, please visit the thriving community at answers.splunk.com to ask and answer questions about your Splunk deployment and how to get the most out of it.

Forums: SplunkAdministration: Incorrect hostnames

Previous Topic: 4.x Forwarders Compatible with 3.4.5 Server?  |   Next Topic: Comparing two files


Posts 1–4 of 4

with the DNS server is OK, given the hostname correctly.

What kind of logs show up when you search for host=munin? How about when you search for host=munin.office.quintagroup.com?

I have noticed that sometimes this happens with old Windows Event Logs, or when a computer has its hostname changed to the fully-qualified domain name.

In both cases shown syslog. I decided this issue as follows: manually entered field "sorcetype"

Ah, very good. We could be more clear about how setting the sourcetype affects your data.