Hi all,
I am working with logs in splunk and here I need to to capture the word before date and time field and the word after it.
ERROR 2022-06-09 xyz-abc
So, using regular expression i wanted to extract the word "error" and "xyz-abc"
but it is not necessarily the starting of log this phrase can be anywhere in the log like
log1:
ERROR 2022-06-09 xay-abc connecting to network.
log2:
java.net.spring ERROR 2022-06-09 connecting to network.
so, please help me with a solution so that I can extract the field which contains error and the other field which contains abc-xyz.
thanks in advance
... View more