I need some help with a basic extraction. I have about 8 different styles of logs which have the same event format. I brought them all in with the same sourcetype.
The first logs "Processing.log" have a transaction ID in the following format:
Transaction ( 12345 )
The next log "Initiator" has the ID in the following format: