Splunk Search

where i can learn regular expressions to use them and to create my own regex

dilstn
Explorer

I really need of some knowledge about regular expression ,, as how to create own regex or rex ... so suggest me some tips to learn from the scratch for regular expression

Tags (1)
0 Karma
1 Solution

dart
Splunk Employee
Splunk Employee

The Field Extractor app on Splunkbase contains a regular expression reference which you can check if you hit the edit link on any of the extractions, which will give you examples and you could start by modifying them.

For more of a step by step tutorial, Zed Shaw's Learn Regex the Hard way is a great course to follow.

A reasonable reference exists in the Regular Expressions Info site, which has a quick start, tutorial and pages covering 'advanced' topics such as lookbehind.

View solution in original post

Ayn
Legend

There are some pretty good resources online.

Also you might want to grab a book. "Mastering Regular Expressions" is nice for instance: http://www.amazon.com/Mastering-Regular-Expressions-Jeffrey-Friedl/dp/0596528124/

Rocket66
Communicator

RegExr is an awesome tool! I like it!

0 Karma

dart
Splunk Employee
Splunk Employee

The Field Extractor app on Splunkbase contains a regular expression reference which you can check if you hit the edit link on any of the extractions, which will give you examples and you could start by modifying them.

For more of a step by step tutorial, Zed Shaw's Learn Regex the Hard way is a great course to follow.

A reasonable reference exists in the Regular Expressions Info site, which has a quick start, tutorial and pages covering 'advanced' topics such as lookbehind.

Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...