Hi! Hope all are fine, and thanks in advance for any help
I'm having problems ingesting Linux Audit Log. For some reason, a weird field delimiter is not being correctly interpreted by Splunk. I'm pasting the examples
How can I get rid of this and get fields "data" and "UID" correctly separated?
... View more