Splunk Enterprise

Field extraction failed for Lab 8 of Splunk Fundamentals 2

OlafH
New Member

Dear,

I was following along the Lab 8 exercise of Splunk Fundamentals 2. However the field extraction failed and an unexpected result was observed. Please see the screenshots below

IP has been highlighted as 'src'

OlafH_0-1614340456028.png

One row selects the wrong result

OlafH_1-1614340493501.png

 

Add sample event and highlighting fails the extraction

OlafH_2-1614340534596.png

 

I am still able to continue with the training but this might be something you want to look into. 

Kind regards,

Olaf

Labels (1)
0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...