Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

More help with regex

$
0
0
I am again in need of help with regex. In a scrubbed example (there are thousands more lines) of the following dns log I have the following: 4/13/2016 5:22:38 AM 062C PACKET 000000FE74EC0260 UDP Rcv 999.99.999.999 8088 Q [0001 D NOERROR] A (12)biggersearch(3)ent(4)john(5)local(0) 4/13/2016 5:22:37 AM 062C PACKET 000000FE766DC0A0 UDP Rcv 999.99.999.999 635d Q [0001 D NOERROR] A (3)dns(8)msftncsi(3)com(0) I need to strip out (12)biggersearch(3)ent(4)john(5)local(0) to be biggersearch.ent.john.local and (3)dns(8)msftncsi(3)com(0) to be dns.msftncs.com Please help and many thanks...

Viewing all articles
Browse latest Browse all 47296

Latest Images

Trending Articles



Latest Images

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>