Splunk Dev

Field extraction for extreme wireless controller

bhargavimusigma
New Member

I need to extract fields for a wireless controller, which is the Extreme identifier, the following is the sample format.

Feb 25 03:00:40 controller events: Radius Client Radius Response: Accepted: UserID:xxxxxx61858D, Client MAC:[xx:xx:xx:61:85:8D] 3
Feb 25 03:00:40 ewc01 events: Radius Client RADIUS server authenticated login (Access Accepted). 3

There are other formats as well, please help me with this

Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

There may be an app for that. Check out https://splunkbase.splunk.com/app/981

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Wondering How to Build Resiliency in the Cloud?

IT leaders are choosing Splunk Cloud as an ideal cloud transformation platform to drive business resilience,  ...

Updated Data Management and AWS GDI Inventory in Splunk Observability

We’re making some changes to Data Management and Infrastructure Inventory for AWS. The Data Management page, ...