<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How can I parse all the syslog data from our Barracuda Email Security Gateway? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305356#M57618</link>
    <description>&lt;P&gt;The the syslog data from our barracuda EMSG is being ingested into Splunk, but I'm having trouble extracting fields from the data. I'm using the regular expression builder, however not all of the data is in the same "format" and I can't define all the fields. Am I missing something here? I've searched the answers, and I can't find anything related to this. &lt;/P&gt;</description>
    <pubDate>Mon, 27 Nov 2017 20:23:24 GMT</pubDate>
    <dc:creator>lawlzsloth</dc:creator>
    <dc:date>2017-11-27T20:23:24Z</dc:date>
    <item>
      <title>How can I parse all the syslog data from our Barracuda Email Security Gateway?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305356#M57618</link>
      <description>&lt;P&gt;The the syslog data from our barracuda EMSG is being ingested into Splunk, but I'm having trouble extracting fields from the data. I'm using the regular expression builder, however not all of the data is in the same "format" and I can't define all the fields. Am I missing something here? I've searched the answers, and I can't find anything related to this. &lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2017 20:23:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305356#M57618</guid>
      <dc:creator>lawlzsloth</dc:creator>
      <dc:date>2017-11-27T20:23:24Z</dc:date>
    </item>
    <item>
      <title>Re: How can I parse all the syslog data from our Barracuda Email Security Gateway?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305357#M57619</link>
      <description>&lt;P&gt;There are apps for that:&lt;BR /&gt;
&lt;A href="https://splunkbase.splunk.com/apps/#/search/Barracuda/"&gt;https://splunkbase.splunk.com/apps/#/search/Barracuda/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2017 20:32:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305357#M57619</guid>
      <dc:creator>woodcock</dc:creator>
      <dc:date>2017-11-27T20:32:35Z</dc:date>
    </item>
    <item>
      <title>Re: How can I parse all the syslog data from our Barracuda Email Security Gateway?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305358#M57620</link>
      <description>&lt;P&gt;There are more than one app in your link. Which one works perfect with Barracuda Email Security Gateway ?&lt;BR /&gt;
I have the same trouble too. Hope your help if convenient.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Apr 2018 09:42:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305358#M57620</guid>
      <dc:creator>kimikoyan</dc:creator>
      <dc:date>2018-04-03T09:42:56Z</dc:date>
    </item>
    <item>
      <title>Re: How can I parse all the syslog data from our Barracuda Email Security Gateway?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305359#M57621</link>
      <description>&lt;P&gt;Which one works perfect with Barracuda Email Security Gateway ?&lt;/P&gt;</description>
      <pubDate>Fri, 24 Aug 2018 20:54:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305359#M57621</guid>
      <dc:creator>evinasco</dc:creator>
      <dc:date>2018-08-24T20:54:18Z</dc:date>
    </item>
    <item>
      <title>Re: How can I parse all the syslog data from our Barracuda Email Security Gateway?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305360#M57622</link>
      <description>&lt;P&gt;This is what i am using so far and you may have to edit the eventypes and add index. &lt;A href="https://splunkbase.splunk.com/app/3123/"&gt;https://splunkbase.splunk.com/app/3123/&lt;/A&gt;&lt;BR /&gt;
Any ideas on which one to use for web gateways and mail archiver?&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jul 2019 21:40:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305360#M57622</guid>
      <dc:creator>Bentash</dc:creator>
      <dc:date>2019-07-15T21:40:28Z</dc:date>
    </item>
    <item>
      <title>Re: How can I parse all the syslog data from our Barracuda Email Security Gateway?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305361#M57623</link>
      <description>&lt;P&gt;This is what i am using so far and you may have to edit the eventypes and add index. &lt;A href="https://splunkbase.splunk.com/app/3123/"&gt;https://splunkbase.splunk.com/app/3123/&lt;/A&gt;&lt;BR /&gt;
Any ideas on which one to use for web gateways and mail archiver?&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jul 2019 21:40:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-can-I-parse-all-the-syslog-data-from-our-Barracuda-Email/m-p/305361#M57623</guid>
      <dc:creator>Bentash</dc:creator>
      <dc:date>2019-07-15T21:40:54Z</dc:date>
    </item>
  </channel>
</rss>

