03-17-2022 08:01 AM
Hello Team,
As of today, we send logs to Splunk with ''logging host X.X.X.X'' command and we have been told that Splunk team is requesting the traffic with VIPs and VIPs are in FQDN format. And this VIP includes several IPs of Splunk for redundancy purposes. Is there any way I can send logs to Splunk using FQDN format?
Example: splunkserver-emea@domain.com
03-17-2022 08:10 AM
Try :
logging origin-id string XXXXXXXX
03-22-2022 02:07 AM
unfortunately did not help
03-22-2022 04:16 AM
unfortunately did not help
This very limited information we have, what did not work ? what was the output ?
why not ask splunk team to remove your oginal IP to what ever they want ?
03-22-2022 04:15 AM
You can use FQDN with logging host, see below.
03-23-2022 12:22 AM
fqdn option is not available on my CUBE. what IOS version you run on the VG?
03-23-2022 02:30 AM
It is running 17.3.5. I also checked on 17.3.4a and it is available there as well. However we do have some SBCs that run 16.9.6 and on these it is not available. I did try to find when this got added to the command, but as usual the documentation side is left behind, so I could not find it in the command reference or in release notes.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide