Splunk Search

How to insert rex expression "..." in a search from Splunk web framework?

Communicator

Someone know how insert a rex expression "..." in a search, using splunk framework?
search:

mvc.tokenSafe ("index=main  source=$sourcename$ File:read | rex "\[[^*](?.+)\]" | fields path | outputlookup read_rules.csv")

the " " gives me problems.
I have tried with ' ' "' "' or ." ". or "$ $"
I have no idea how to work around this.

0 Karma
1 Solution

Builder

have you tried escaping the inner quotes like so \" ?

View solution in original post

Builder

have you tried escaping the inner quotes like so \" ?

View solution in original post

Communicator

Work, thank you!

0 Karma