Splunk parses pure JSON logs almost like magic. The format works really well for Splunk to automatically extract fields you would need in your searche…
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2024/03/oh-no-my-json-keys-and-values-are-separated-how-can-i-extract-them-for-my-searches/