Source.ip not available in the logs received from windows

I have integrated Windows computer and receiving logs using elastic agent. For several security rules source.ip field is required for detection. Instead of source.ip the logs are indexed with host.ip.

how do i change it to source.ip?