Splunk Search

How to generate dummy splunk events/results to test Automatic Field Extraction

anonymous_hippo
Explorer

Hi, I am modifying my logging in my application (Java spring boot) to include: key/value pair list and a JSON string of relevant data/information I want to log to trigger Splunk's Automatic Field Extraction.

Key/value pair list:

 

[key1=val1, key2=val2, key3=val3, etc]

 

and

JSON string:

 

{

"field1" : "value1",

"field2" : null

}

 

 

Can anyone inform me how to possible generate some dummy events like this so I can test that the Automatic Field Extraction is indeed extraction the KEY from the list and assigning the correct VALUE? Similarly for the JSON string, if it's possible. If not , I suppose I can just use the spath feature.

Labels (1)
0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...