How to extract fields which comes under message and failedRecords.
For JSON data, use spath command. Reference:https://community.splunk.com/t5/Splunk-Search/How-to-parse-my-JSON-data-with-spath-and-table-the-dat...https://kinneygroup.com/blog/splunk-spath-command/