I know that Splunk will automatically extract fields for field=xyz patterns in my data. How can I tell Splunk to also automatically extract for field:pattern in my data?
If there is no space after the ':', automatic field extraction will not happen and you will instead need to setup the required field extractions as per http://docs.splunk.com/Documentation/Splunk/5.0.1/Knowledge/Addfieldsatsearchtime