# Creating geoip data for internal networks

**URL:** <https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729>\
**Category:** Logstash\
**Created:** [May 15, 2015, 4:23am UTC](https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729 "2015-05-15T04:23:52Z")\
**Posts on this page:** 1\
**Showing post:** 11

<div class="post-metadata">

**Author:** ![bastianhoss](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bastianhoss/32/11437_2.png) [@bastianhoss](https://discuss.elastic.co/u/bastianhoss)\
**Post date:** [August 18, 2016, 9:06am UTC](https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729/11 "2016-08-18T09:06:17Z")

</div>

> [@TileMap, GeoIP for RFC1918 addresses](https://discuss.elastic.co/t/tilemap-geoip-for-rfc1918-addresses/58247/3):
>
> geoip { source =\> "client\_address" target =\> "geoip" database =\> "/etc/logstash/conf.d/geo/GeoLiteCity.dat" add\_field =\> ["[geoip][coordinates]", "%{[geoip][longitude]}" ] add\_field =\> ["[geoip][coordinates]", "%{[geoip][latitude]}" ] if [client\_address] =~ /^10\./ { mutate { replace =\> { "[geoip][timezone]" =\> "Pacific/Auckland" } } mutate { replace =\> { "[geoip][country\_name]" =\> "University of Otago" } } …

---

_[View the full topic](https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729)._
