I have recently started using json log lines which works great with Splunk. There is one issue, however, which I cannot resolve at the moment.
The idea is to construct the original request out of json object
I have a field with structure:
req.args.paramA = value1
req.args.paramB = value2
req.args.paramC = value3
What I want to have in the end is a string:
By design, I don't know param real names. Those can be changed, depending on what user submitted.
I tried using (as a test):