Home
Join the Community
Getting Started
Welcome Center
Join Slack
Be a Splunk Champion
SplunkTrust
Super User Program
Badges
Tell us what you think
Splunk Love
Community Feedback
Learn Splunk
Learning Paths
Training & Certification
Training + Certification Discussions
Training & Certification Blog
AppDynamics Knowledge Base
Share a Tip
Find Answers
Splunk Administration
Getting Data In
Deployment Architecture
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Platform
Splunk Enterprise
Splunk Cloud Platform
Splunk AppDynamics
Apps & Add-ons
Splunk Development
All Apps and Add-ons
Premium Solutions
Splunk Enterprise Security
Splunk Observability Cloud
Splunk ITSI
Splunk SOAR
News & Events
Blog & Announcements
Community Blog
Product News & Announcements
Events and Contests
Tech Talks: Technical Deep Dives
Office Hours: Ask the Experts
User Groups
Resources
.conf25
SplunkBase
Developers
Documentation
Splunk Ideas
Splunk Events
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
×
Join the Conversation
Without signing in, you're just watching from the sidelines.
Sign in or Register
to connect, share, and be part of the Splunk Community.
All community
Knowledge base
jaredthomason
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
Ask a Question
Find Answers
:
About jaredthomason
jaredthomason
Explorer
Member since:
06-07-2021
05-19-2022
Community Statistics
Posts
4
Solutions
0
Karma Given
3
Karma Received
0
Member Since
06-07-2021
View all badges
Activity Feed
Posted
Re: Splunk Add-on for Microsoft IIS lookup issue on indexers
on
All Apps and Add-ons
.
02-04-2022
12:22 PM
Karma
Re: How to use split to extract a delimited value?
for somesoni2.
07-27-2021
09:13 AM
Posted
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-27-2021
07:19 AM
Posted
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-22-2021
01:08 PM
Karma
Re: Monitoring MS SQL logs from Windows Event viewer
for hughkelley.
07-22-2021
12:35 PM
Posted
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-22-2021
11:36 AM
Tagged
Re: Monitoring MS SQL logs from Windows Event viewer
on
Splunk Enterprise Security
.
07-22-2021
11:36 AM
Karma
Re: How do I determine my indexing volume by host, source, or sourcetype?
for ziegfried.
06-07-2021
08:24 AM
Topics I've Started
No posts to display.
View All
Latest Contributions by jaredthomason
Topics jaredthomason has Participated In
Latest Contributions by jaredthomason
Re: Splunk Add-on for Microsoft IIS lookup issue o...
by
jaredthomason
in
All Apps and Add-ons
02-04-2022
12:22 PM
02-04-2022
12:22 PM
Did you ever figure this out?
... View more
Re: Monitoring MS SQL logs from Windows Event view...
by
jaredthomason
in
Splunk Enterprise Security
07-27-2021
07:19 AM
07-27-2021
07:19 AM
I had to change the first regular expression to the following. \<Data\>(?<zzz_sql_audit_data>[^*]*)\<\/Data\>
... View more
Re: Monitoring MS SQL logs from Windows Event view...
by
jaredthomason
in
Splunk Enterprise Security
07-22-2021
01:08 PM
07-22-2021
01:08 PM
Also, Which .conf files are you editing? Is it in a specific app on the SQL server or an app on the indexer?
... View more
Re: Monitoring MS SQL logs from Windows Event view...
by
jaredthomason
in
Splunk Enterprise Security
07-22-2021
11:36 AM
07-22-2021
11:36 AM
Does that regular expression work for you? \<Data\>(?<zzz_sql_audit_data>.+?)\<\/Data\> I have not been able to get it to work.
... View more
Tags:
regular expression
Contact Me
Online Status
Offline
Date Last Visited
05-19-2022
12:56 PM
Karma given to
User
Karma Count
somesoni2
1
hughkelley
1
ziegfried
1
View All