<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: F5 index not properly captured in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46683#M8812</link>
    <description>&lt;P&gt;I am not sure if you are referring to a Splunk for F5 Security, but, I am having some problems related to the extractions done by this app. I followed all the steps available on pdf which came with the app (that once named Creating-a-logging-profile-for-Splunk) and I noticed that when a fields is extracted, it is being extracted field_name=value, not just the field's value. It is being a problem to filter data because the website names into the combo boxes are being extracted the same way either. I wonder if there are additional configs to generate event logs which are not part of that available doc.&lt;/P&gt;

&lt;P&gt;Someone having similar problems, I say, related with extractions done by this app?&lt;/P&gt;

&lt;P&gt;Thanks for any help.&lt;/P&gt;</description>
    <pubDate>Thu, 02 May 2013 15:33:05 GMT</pubDate>
    <dc:creator>wagnerbianchi</dc:creator>
    <dc:date>2013-05-02T15:33:05Z</dc:date>
    <item>
      <title>F5 index not properly captured</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46681#M8810</link>
      <description>&lt;P&gt;How to check if f5 logs are getting into Splunk properly?&lt;/P&gt;</description>
      <pubDate>Thu, 28 Feb 2013 06:08:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46681#M8810</guid>
      <dc:creator>WilliamF</dc:creator>
      <dc:date>2013-02-28T06:08:26Z</dc:date>
    </item>
    <item>
      <title>Re: F5 index not properly captured</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46682#M8811</link>
      <description>&lt;P&gt;what does 'properly' mean? are you seeing the events in the index? have you tried searching for something you know should be in the events, over all time?&lt;/P&gt;</description>
      <pubDate>Wed, 10 Apr 2013 16:26:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46682#M8811</guid>
      <dc:creator>piebob</dc:creator>
      <dc:date>2013-04-10T16:26:22Z</dc:date>
    </item>
    <item>
      <title>Re: F5 index not properly captured</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46683#M8812</link>
      <description>&lt;P&gt;I am not sure if you are referring to a Splunk for F5 Security, but, I am having some problems related to the extractions done by this app. I followed all the steps available on pdf which came with the app (that once named Creating-a-logging-profile-for-Splunk) and I noticed that when a fields is extracted, it is being extracted field_name=value, not just the field's value. It is being a problem to filter data because the website names into the combo boxes are being extracted the same way either. I wonder if there are additional configs to generate event logs which are not part of that available doc.&lt;/P&gt;

&lt;P&gt;Someone having similar problems, I say, related with extractions done by this app?&lt;/P&gt;

&lt;P&gt;Thanks for any help.&lt;/P&gt;</description>
      <pubDate>Thu, 02 May 2013 15:33:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/F5-index-not-properly-captured/m-p/46683#M8812</guid>
      <dc:creator>wagnerbianchi</dc:creator>
      <dc:date>2013-05-02T15:33:05Z</dc:date>
    </item>
  </channel>
</rss>

