Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

More help with regex

$
0
0
I am again in need of help with regex. In a scrubbed example (there are thousands more lines) of the following dns log I have the following: 4/13/2016 5:22:38 AM 062C PACKET 000000FE74EC0260 UDP Rcv 999.99.999.999 8088 Q [0001 D NOERROR] A (12)biggersearch(3)ent(4)john(5)local(0) 4/13/2016 5:22:37 AM 062C PACKET 000000FE766DC0A0 UDP Rcv 999.99.999.999 635d Q [0001 D NOERROR] A (3)dns(8)msftncsi(3)com(0) I need to strip out (12)biggersearch(3)ent(4)john(5)local(0) to be biggersearch.ent.john.local and (3)dns(8)msftncsi(3)com(0) to be dns.msftncs.com Please help and many thanks...

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>