# Creating geoip data for internal networks

**URL:** <https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729>\
**Category:** Logstash\
**Created:** [May 15, 2015, 4:23am UTC](https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729 "2015-05-15T04:23:52Z")\
**Posts on this page:** 1\
**Showing post:** 12

<div class="post-metadata">

**Author:** ![Joshua\_Fernandes](https://avatars.discourse-cdn.com/v4/letter/j/82dd89/32.png) [@Joshua\_Fernandes](https://discuss.elastic.co/u/Joshua_Fernandes)\
**Post date:** [May 15, 2017, 11:42pm UTC](https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729/12 "2017-05-15T23:42:48Z")

</div>

Hi @bastianhoss,  
Unsure if you fixed this or not, but I ran into this issue yesterday so I'll post what I wound up doing for future searches...

```
 if [client_address] =~ /^10\./ {
  mutate { replace => { "[geoip][timezone]" => "Pacific/Auckland" } }
  mutate { replace .....
} else {
  geoip {
    source => "client_address"
    target => "geoip"
    add_tag => ["nginx-geoip"]
  }
}
```

---

_[View the full topic](https://discuss.elastic.co/t/creating-geoip-data-for-internal-networks/729)._
