cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Logfile Extension and Regular Expressions

Hoosain.Madhi
New Poster

how do I use a regular expression to match a pattern in a logfile - I am using LogFile extension

 

for example from the following line specific to a "Response" msg

 

{"remoteHost":"epdg","epoch":1648084954231,"command":"Response","Result-Code",{"value":1001}},"statusCode":"2001","status":"FOO ","timestamp":"2022-03-24 03:22:34.231"}

 

can I use a regular expression to find statusCode NOT 2001 indicating a failure - If so what regex should I use?

cant seem to find documentation

 

 

 

 

1 REPLY 1

Hoosain.Madhi
New Poster

After looking at all possible statusCodes the regex I came up with is :

 

.*"command":"Response".*"statusCode":"[1|3|4|5].*".*

 

I am not sure on what to put in the config.yml – any ideas?

 

- displayName: "Diameter-EAP-Response-Failures"

    pattern: "?????"

    matchExactString: false

    caseSensitive: false

    printMatchedString: false

 

Join Us On December 10
Learn how Splunk and AppDynamics are redefining observability


Register Now!

Observe and Explore
Dive into our Community Blog for the Latest Insights and Updates!


Read the blog here