<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need Regex in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478781#M134242</link>
    <description>&lt;P&gt;@vijaysri &lt;/P&gt;

&lt;P&gt;Can you please share sample event and expected output?&lt;/P&gt;</description>
    <pubDate>Fri, 03 Jan 2020 07:21:26 GMT</pubDate>
    <dc:creator>kamlesh_vaghela</dc:creator>
    <dc:date>2020-01-03T07:21:26Z</dc:date>
    <item>
      <title>Need Regex</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478780#M134241</link>
      <description>&lt;P&gt;Hi &lt;/P&gt;

&lt;P&gt;Please help me with the regex for below&lt;BR /&gt;
1) Hostname &lt;BR /&gt;
2) IP address&lt;BR /&gt;
3) UserID (for eg: vijay_111)&lt;BR /&gt;
4) mail id&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2020 07:05:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478780#M134241</guid>
      <dc:creator>VijaySrrie</dc:creator>
      <dc:date>2020-01-03T07:05:05Z</dc:date>
    </item>
    <item>
      <title>Re: Need Regex</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478781#M134242</link>
      <description>&lt;P&gt;@vijaysri &lt;/P&gt;

&lt;P&gt;Can you please share sample event and expected output?&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2020 07:21:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478781#M134242</guid>
      <dc:creator>kamlesh_vaghela</dc:creator>
      <dc:date>2020-01-03T07:21:26Z</dc:date>
    </item>
    <item>
      <title>Re: Need Regex</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478782#M134243</link>
      <description>&lt;P&gt;Hello, &lt;/P&gt;

&lt;P&gt;Can you share your events plz. &lt;/P&gt;

&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2020 13:03:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478782#M134243</guid>
      <dc:creator>Kawtar</dc:creator>
      <dc:date>2020-01-03T13:03:00Z</dc:date>
    </item>
    <item>
      <title>Re: Need Regex</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478783#M134244</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;We don't have any event. We just need the regex for above.&lt;BR /&gt;
eg: Hostname - alphanumeric &lt;BR /&gt;
eg: User ID  (for eg: vijay_111)&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2020 14:24:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478783#M134244</guid>
      <dc:creator>VijaySrrie</dc:creator>
      <dc:date>2020-01-03T14:24:05Z</dc:date>
    </item>
    <item>
      <title>Re: Need Regex</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478784#M134245</link>
      <description>&lt;P&gt;If you can share a sample event please provide&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2020 14:25:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478784#M134245</guid>
      <dc:creator>VijaySrrie</dc:creator>
      <dc:date>2020-01-03T14:25:06Z</dc:date>
    </item>
    <item>
      <title>Re: Need Regex</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478785#M134246</link>
      <description>&lt;P&gt;The regex would need to be created specifically for the event. It would be a custom field extraction based on the event syntax. Without an event, it is impossible to create a reliable regex for the field extraction you desire.&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2020 14:51:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-Regex/m-p/478785#M134246</guid>
      <dc:creator>mydog8it</dc:creator>
      <dc:date>2020-01-03T14:51:12Z</dc:date>
    </item>
  </channel>
</rss>

