Dashboards & Visualizations

XML Parsing issue in splunk and needs to correlate the events

amarababu_katar
Loves-to-Learn Everything

Hi Team,

Huge XML files are loading into Splunk and based on the xml we needs to fetch the number values and sum it display in splunk dashboard.
From the screen shot each line treated as one event in splunk and from those events i needs to extract name field and extracting number which is before the japan word(which is in light greeen color).
i'm not able to correlate noted screen shot, please help how to extract and correlate the events from the screen shot.

i'm attaching xml splunk event screen shot.alt text

Tags (3)
0 Karma

to4kawa
Ultra Champion

サニタイズしたログの提示をお願いします。

Please provide sanitized logs.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...