Splunk Search

Regex for fetching number

priya0709
Path Finder

how to use regex yo fetch Incident (eg: INC0000453245 or INC0000342568)

to fetch INC and exactly 10 numbers after INC??

 

0 Karma

thambisetty
Super Champion

Regular expressions in Splunk 

| rex “(?<number>INC\d{10})”

you might need to replace double quotes from your keyboard.

 

 

————————————
If this helps, give a like below.
0 Karma
Take the 2021 Splunk Career Survey

Help us learn about how Splunk has
impacted your career by taking the 2021 Splunk Career Survey.

Earn $50 in Amazon cash!