All Apps and Add-ons

Issues with Mimecast 3.1.3 regarding Subjects separated with pipes "|"

JRamirezEnosys
Explorer

Hi all,

Me and my team have noticed that from a number of emails traffic submitted by mimecast, the Subject in the email have a Pipe symbol "|" something like the following:

You will get this | You wont get this | either this

Splunk only add "You will get this" in the Subject field, rather than the whole string, is there anything I need to change in the extraction or is an issue in the MimeCast side?

Tags (1)
0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...