Splunk Dev

Field extraction for extreme wireless controller

bhargavimusigma
New Member

I need to extract fields for a wireless controller, which is the Extreme identifier, the following is the sample format.

Feb 25 03:00:40 controller events: Radius Client Radius Response: Accepted: UserID:xxxxxx61858D, Client MAC:[xx:xx:xx:61:85:8D] 3
Feb 25 03:00:40 ewc01 events: Radius Client RADIUS server authenticated login (Access Accepted). 3

There are other formats as well, please help me with this

Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

There may be an app for that. Check out https://splunkbase.splunk.com/app/981

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and stall ...

Print, Leak, Repeat: UEBA Insider Threats You Can't Ignore

Are you ready to uncover the threats hiding in plain sight? Join us for "Print, Leak, Repeat: UEBA Insider ...

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...