Splunk Search

Regex for extact numbers in input.conf

smanojkumar
Contributor

Hi there!

   In inputs.conf whitelist, how do I create a regex expression for whitelisting files which contain a certain number (101-109, 201, 205, 301-303)?

Labels (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @smanojkumar,

please try this regex

(10\d)|201|205|(30[1-3])

that you can test at https://regex101.com/r/ujeYQM/1

Ciao.

Giuseppe

View solution in original post

gcusello
SplunkTrust
SplunkTrust

Hi @smanojkumar,

please try this regex

(10\d)|201|205|(30[1-3])

that you can test at https://regex101.com/r/ujeYQM/1

Ciao.

Giuseppe

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...