IPtoHost Enrichment Source
The IPtoHost Enrichment Source plugin converts an IP address present in log events into a reliable hostname during the enrichment process. When an event with IP address is triggered, it requests the DNS Server to resolve the IP address into a common name/hostname; if the DNS Server can resolve the IP address, the event shows the hostname as an enriched data, else the event remains as it is.
Package Details
Installation
Follow these steps to install the IPtoHostEnrichmentSource v5.0.0 application:
- Download the IPtoHost Enrichment Source package from the Download section above.
- Install the package by importing the pak file to LogPoint under Settings >> System >> Applications.
Refer to the Enrichment Sources section of the LogPoint Administration Manual to view the details on the configuration.
Sample Log
Package Details
Bug Fix
Necessary changes have been made in the plugin to align with the new Corporate Visual Identity (CVI) of LogPoint.
Installation
Follow these steps to install the IPtoHost Enrichment Source v3.0.1 plugin:
- Download the IPtoHost Enrichment Source package from the Download section above.
- Install the package by importing the pak file to LogPoint under Settings >> System >> Applications.
- Add the required IPtoHost Enrichment Source as a device in LogPoint.
- Create a normalization policy and a routing policy.
- Add an IPtoHost Enrichment Source.
- Create an enrichment policy with the IPtoHost Enrichment Source.
- Create a processing policy with the previously created normalization policy, routing policy and enrichment policy.
- Create a log collection policy by adding the processing policy created in step no 7 to the required collector/fetcher.
- Assign the log collection policy to the device.
Please refer to the Enrichment Sources section of LogPoint Administration Manual to view the details on how to configure the Enrichment Source.
Sample Log
Support
If you have any queries or require assistance, please feel free to contact our support team:
Email: servicedesk@logpoint.com
Phone: +45 7060 6100
Best regards,
Comments
Please sign in to leave a comment.