Home
Join the Community
Getting Started
Welcome
Join Slack
Be a Splunk Champion
SplunkTrust
Super User Program
Badges
Tell us what you think
Splunk Love
Community Feedback
Learn Splunk
Learning Paths
Training & Certification
Training + Certification Discussions
Training & Certification Blog
AppDynamics Knowledge Base
Share a Tip
Find Answers
Splunk Administration
Getting Data In
Deployment Architecture
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Platform
Splunk Enterprise
Splunk Cloud Platform
Splunk AppDynamics
Apps & Add-ons
Splunk Development
All Apps and Add-ons
Premium Solutions
Splunk Enterprise Security
Splunk Observability Cloud
Splunk ITSI
Splunk SOAR
News & Events
Blog & Announcements
Community Blog
Product News & Announcements
Events and Contests
Tech Talks: Technical Deep Dives
Office Hours: Ask the Experts
User Groups
Resources
.conf25
SplunkBase
Developers
Documentation
Splunk Ideas
Splunk Events
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
×
Are you a member of the Splunk Community?
Sign in or Register
with your Splunk account to get your questions answered, access valuable resources and connect with experts!
All community
Knowledge base
minhquannguyen7
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
Ask a Question
Find Answers
:
About minhquannguyen7
minhquannguyen7
Engager
Member since:
07-11-2023
09-15-2023
Community Statistics
Posts
3
Solutions
0
Karma Given
1
Karma Received
0
Member Since
07-11-2023
View all badges
Activity Feed
Posted
Splunk Alert: DMC Alert Total License Usage 90% Near Daily Quota
on
Deployment Architecture
.
09-15-2023
01:57 AM
Karma
Re: How to extract first ip from "http_x_forwarded_for="222.xx.xx.xx, 122.211.xx.xx" using rex in splunk
for santoshneelam.
07-11-2023
08:51 PM
Posted
Re: How to extract first ip from "http_x_forwarded_for="222.xx.xx.xx, 122.211.xx.xx" using rex in splunk
on
Splunk Search
.
07-11-2023
02:57 AM
Posted
How to extract first ip from "http_x_forwarded_for="222.xx.xx.xx, 122.211.xx.xx" using rex in Splunk search?
on
Splunk Search
.
07-11-2023
12:42 AM
Topics I've Started
Subject
Karma
Author
Latest Post
Splunk Alert: DMC Alert Total License Usage 90% Ne...
Deployment Architecture
0
minhquannguyen7
09-15-2023
02:02 AM
by
gcusello
How to extract first ip from "http_x_forwarded_for...
Splunk Search
0
minhquannguyen7
07-11-2023
02:57 AM
by
minhquannguyen7
View All
Latest Contributions by minhquannguyen7
Topics minhquannguyen7 has Participated In
Latest Contributions by minhquannguyen7
Splunk Alert: DMC Alert Total License Usage 90% Ne...
by
minhquannguyen7
in
Deployment Architecture
09-15-2023
01:57 AM
09-15-2023
01:57 AM
My splunk index have a trouble Total License Usage 90% Near Daily Quota how to solve it pls ?
... View more
Re: How to extract first ip from "http_x_forwarded...
by
minhquannguyen7
in
Splunk Search
07-11-2023
02:57 AM
07-11-2023
02:57 AM
thanks you @santoshneelam ! i want extract in the different log with any field look like this , what shoud i do ???
... View more
How to extract first ip from "http_x_forwarded_for...
by
minhquannguyen7
in
Splunk Search
07-11-2023
12:42 AM
07-11-2023
12:42 AM
here is field "http_x_forwarded_for="222.xx.xx.xx, 122.211.xx.xx" i have try: | rex field=_raw "http_x_forwarded_for\s*=\s*(?<ip_address>[^,\s]+)" | table ip_address But it not works, pls help !
... View more
Labels
Labels:
field extraction
fields
Contact Me
Online Status
Offline
Date Last Visited
09-15-2023
07:48 AM
Karma given to
User
Karma Count
santoshneelam
1
View All