Home
Join the Community
Welcome Center
Welcome Center
Join Slack
Be a Splunk Champion
SplunkTrust
Splunk MVP
Become a User Group Leader
Splunk Love
Share a Tip
Find Answers
Splunk Administration
Getting Data In
Deployment Architecture
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Products
Splunk Enterprise
Splunk Enterprise Security
Splunk Cloud Platform
Splunk Observability Cloud
Splunk AppDynamics
Splunk SOAR
Apps & Add-ons
All Apps and Add-ons
Splunk Development
Events
User Groups
Tech Talks: Technical Deep Dives
Office Hours: Ask the Experts
From Data to Insight: The Splunk Dashboard Contest
Dashboard Contest Terms and Conditions
Blogs
Community Blog
Product News & Announcements
Training & Certification Blog
Learning
Learning Paths
Training & Certification
Training + Certification Discussions
AppDynamics Knowledge Base
Best of conf
Resources
.conf25
Splunkbase
Developers
Documentation
Splunk Ideas
Splunk Events
Voice of Customer
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
×
Join the Conversation
Without signing in, you're just watching from the sidelines.
Sign in or Register
to connect, share, and be part of the Splunk Community.
Ask a Question
About jaredthomason
jaredthomason
Explorer
Member since:
06-07-2021
05-19-2022
Community Statistics
Posts
4
Solutions
0
Karma Given
3
Karma Received
0
Member Since
06-07-2021
View all badges
Activity Feed
Posted
Re: Splunk Add-on for Microsoft IIS lookup issue on indexers
on
All Apps and Add-ons
.
02-04-2022
12:22 PM
Karma
Re: How to use split to extract a delimited value?
for somesoni2.
07-27-2021
09:13 AM
Posted
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-27-2021
07:19 AM
Posted
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-22-2021
01:08 PM
Karma
Re: Monitoring MS SQL logs from Windows Event viewer
for hughkelley.
07-22-2021
12:35 PM
Posted
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-22-2021
11:36 AM
Tagged
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-22-2021
11:36 AM
Karma
Re: How do I determine my indexing volume by host, source, or sourcetype?
for ziegfried.
06-07-2021
08:24 AM
Topics I've Started
No posts to display.
View All
Latest Contributions by jaredthomason
Topics jaredthomason has Participated In
Latest Contributions by jaredthomason
Re: Splunk Add-on for Microsoft IIS lookup issue o...
by
jaredthomason
in
All Apps and Add-ons
02-04-2022
12:22 PM
02-04-2022
12:22 PM
Did you ever figure this out?
... View more
Re: Monitoring MS SQL logs from Windows Event view...
by
jaredthomason
in
Splunk Enterprise Security
07-27-2021
07:19 AM
07-27-2021
07:19 AM
I had to change the first regular expression to the following. \<Data\>(?<zzz_sql_audit_data>[^*]*)\<\/Data\>
... View more
Re: Monitoring MS SQL logs from Windows Event view...
by
jaredthomason
in
Splunk Enterprise Security
07-22-2021
01:08 PM
07-22-2021
01:08 PM
Also, Which .conf files are you editing? Is it in a specific app on the SQL server or an app on the indexer?
... View more
Re: Monitoring MS SQL logs from Windows Event view...
by
jaredthomason
in
Splunk Enterprise Security
07-22-2021
11:36 AM
07-22-2021
11:36 AM
Does that regular expression work for you? \<Data\>(?<zzz_sql_audit_data>.+?)\<\/Data\> I have not been able to get it to work.
... View more
Tags:
regular expression
Contact Me
Online Status
Offline
Date Last Visited
05-19-2022
12:56 PM
Karma given to
User
Karma Count
somesoni2
1
hughkelley
1
ziegfried
1
View All