Skip to main content
IP Extrainfo for Splunk app icon

IP Extrainfo for Splunk

The App "IP Extrainfo for Splunk" provides a collection of commands to add meta-information to IPs (IPv4 and IPv6): two Custom Search Commands 'ipextrainfo' & 'iprange2cidr' and one static lookup 'ip2isp'. The command "ipextrainfo" enriches any IP-addresses (IPv4 & IPv6) with up to 28 metainfo-fields (like currency, timezone, isp/org, latitude/longitude, postal,...). The command "iprange2cidr" is used to calculate the corresponding CIDR for a given range between any two IPs (IPv4 & IPv6). The static lookup "ip2isp" let's you map an IPv4 to the ISP (internet service provider) using a fast and static lookup.Built by Splunk Works
splunk product badge

Default Version 1.2

September 5, 2024

Compatibility

Splunk Enterprise

Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0

Rating
5
(1)

Log in to rate this app

Support
Not Supported

The App "IP Extrainfo for Splunk" provides a collection of commands to add meta-information to IPs (IPv4 and IPv6): two Custom Search Commands 'ipextrainfo' & 'iprange2cidr' and one static lookup 'ip2isp'. The command "ipextrainfo" enriches any IP-addresses (IPv4 & IPv6) with up to 28 metainfo-fields (like currency, timezone, isp/org, latitude/longitude, postal,...). The command "iprange2cidr" is used to calculate the corresponding CIDR for a given range between any two IPs (IPv4 & IPv6). The static lookup "ip2isp" let's you map an IPv4 to the ISP (internet service provider) using a fast and static lookup.