Splunk Search

Help with non eng word rex search?

inventsekar
SplunkTrust
SplunkTrust

Hi All... hope you are doing good.. 

so i have been working on a small project
(thirukkural / "kural" - its a collection of 1330 two line songs in tamil language, one of a most famous literature work in tamil language. pls note, bible is the most translated book in whole world and kural is the second most translated book).

i would like to ingest this kural to splunk. its done easily. 

then i wanted to do some basic "sentiment analysis" on kural.. its done as well. (if u r free pls check this 4 mins video of this task at youtube)

thanks to @yannK .. his SPL worked perfect, got it from this page

 

now i would like to search with tamil words.. regular search is working fine. 

 

for example, i can search: 

source="fulltamil.txt" host="laptop" index="thirukkural" sourcetype="thirukkural" செயல்


the rex search i have been thinking:
source="fulltamil.txt" host="laptop" index="thirukkural" sourcetype="thirukkural"
| regex _raw="செயல்$"

 

 

now i would like to search a song which starts or ends with a particular word.. the rex/regex search is not working fine. pls suggest, thanks. 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
Labels (1)
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Building Momentum: Splunk Developer Program at .conf25

At Splunk, developers are at the heart of innovation. That’s why this year at .conf25, we officially launched ...