Dashboards & Visualizations

XML Parsing issue in splunk and needs to correlate the events

amarababu_katar
Loves-to-Learn Everything

Hi Team,

Huge XML files are loading into Splunk and based on the xml we needs to fetch the number values and sum it display in splunk dashboard.
From the screen shot each line treated as one event in splunk and from those events i needs to extract name field and extracting number which is before the japan word(which is in light greeen color).
i'm not able to correlate noted screen shot, please help how to extract and correlate the events from the screen shot.

i'm attaching xml splunk event screen shot.alt text

Tags (3)
0 Karma

to4kawa
Ultra Champion

サニタイズしたログの提示をお願いします。

Please provide sanitized logs.

0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...