Splunk Enterprise Security

Table out results by identifying patterns in a string field

sparachi
Engager

I would like to get results by identifying a patterns with in string filed based on the string match/pattern/occurrence.
Ex::
File_name filed has a collection of string values like ABCD , ABCDG, ABCGRC, ABCD21,ABCDXYZ ,INDIAUS,INDIABritain,INDIAAus....
I need to get below output based on count of occurrences of word in each value of File_name filed.
Patters::
ABCD
INDIA
ABC and so on..

Hint: ABCD has occurred 4 times in ABCD,ABCDG,ABCD21,ABCDXYZ and INDIA 3 times and so on.

sparachi
Engager

Thanks for your response .. your solution works part of my requirement but we are not sure that in only first 4 characters we find the pattern .. string may also be of 22na9INDI, USAABCD, 123INDIBritain..like that ..

0 Karma
Get Updates on the Splunk Community!

Best Strategies to Optimize Observability Costs

 Join us on Tuesday, May 6, 2025, at 11 AM PDT / 2 PM EDT for an insightful session on optimizing ...

Fueling your curiosity with new Splunk ILT and eLearning courses

At Splunk Education, we’re driven by curiosity—both ours and yours! That’s why we’re committed to delivering ...

Splunk AI Assistant for SPL 1.1.0 | Now Personalized to Your Environment for Greater ...

Splunk AI Assistant for SPL has transformed how users interact with Splunk, making it easier than ever to ...