We are trying to extract the hostname from the logs . but unable to get the exact output ( we need hostname as sample-987) . Please find the logs and tried command. Please assist us on high priority. Thanks
Symptom: type DD Alert Sample-987: CRITICAL: DiskFailure: HardwareFailure
| rex field=_raw "DD\s\Alert\s(?<HostName>\w+-\d+)"