All Apps and Add-ons

Issues with Mimecast 3.1.3 regarding Subjects separated with pipes "|"

JRamirezEnosys
Explorer

Hi all,

Me and my team have noticed that from a number of emails traffic submitted by mimecast, the Subject in the email have a Pipe symbol "|" something like the following:

You will get this | You wont get this | either this

Splunk only add "You will get this" in the Subject field, rather than the whole string, is there anything I need to change in the extraction or is an issue in the MimeCast side?

Tags (1)
0 Karma
Get Updates on the Splunk Community!

.conf25 Registration is OPEN!

Ready. Set. Splunk! Your favorite Splunk user event is back and better than ever. Get ready for more technical ...

Detecting Cross-Channel Fraud with Splunk

This article is the final installment in our three-part series exploring fraud detection techniques using ...

Splunk at Cisco Live 2025: Learning, Innovation, and a Little Bit of Mr. Brightside

Pack your bags (and maybe your dancing shoes)—Cisco Live is heading to San Diego, June 8–12, 2025, and Splunk ...