want to extract a field in splunk however Splunk Regex won't work so I am writing my own Regex. However I am struggling to extract. Can someone please help?
So far I was able to write this .*(?i)Node ID=^nbg
using regex101.com I ended up with this
Node ID=(?i:(nbg))(.+)(?i:(cxm\d))|Node ID=(.+)(?i:(cxm\d))
the capturing group
(.+) gives you the required results.
I'm sure this is not the best solution regex wise and some more clever guys haver better regexes, but it gives you something to start with 🙂