Replies: 1 comment
-
|
Hey @StefanSa, Here's a small config to demonstrate how to extract only the source IP: Send event: Output: |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Hi there,
Hi, i'm trying to extract the src and dst fields from a sonicwall firewall from ssyslog. What i do not want to succeed.
Can someone please shed some light on what i am doing wrong.
vector.toml
example logfile:
output vector:
The regex itself was successfully tested here:
https://regex101.com/
Thanx for any help here
Stefan
Beta Was this translation helpful? Give feedback.
All reactions