CARVIEW |
Select Language
HTTP/2 200
date: Wed, 30 Jul 2025 21:05:57 GMT
content-type: text/html; charset=UTF-8
server: Apache
set-cookie: Apache=6f43ffc4.63b2be414c810; path=/; expires=Thu, 26-Jul-40 21:05:56 GMT; domain=.splunk.com
x-frame-options: SAMEORIGIN
strict-transport-security: max-age=31536000; includeSubDomains; preload
x-content-type-options: nosniff
set-cookie: PHPSESSID=02eb838fd3a437c80525989b7156dfa4; path=/
expires: Thu, 01 Jan 1970 00:00:00 GMT
cache-control: private, must-revalidate, max-age=0
pragma: no-cache
set-cookie: ponydocs_session=02eb838fd3a437c80525989b7156dfa4; path=/; secure; HttpOnly
content-language: en
x-ua-compatible: IE=Edge
vary: Accept-Encoding,Cookie
x-xss-protection: 1; mode=block
referrer-policy: strict-origin-when-cross-origin
Splexicon:Fieldextractor - Splunk Documentation
We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website.
Learn more (including how to update your settings) here »
field extractor
field extractor
noun
A Splunk Enterprise utility that helps you to dynamically create custom fields. First, you highlight portions of a sample event that should be extracted as fields. Then the field extractor generates a regular expression that extracts those fields from similar events. You can validate the extraction results and improve extraction accuracy by removing false-positive matches. The field extractor can build only search-time field extractions that are associated with specific source types.
For more information
In the Knowledge Manager Manual:
A
B
C
D
E
F
I
K
L
M
P
R
S
- saved search
- scheduled alert
- scheduled report
- scheduled search
- scheduler
- scripted authentication
- scripted input
- search
- search affinity
- Search app
- search artifact
- search assistant
- search execution directive
- search factor
- search field
- search filter
- search head
- search head cluster
- search head cluster captain
- search head cluster member
- search head clustering
- search head pooling
- search head targeting
- search job
- Search Job Inspector
- search macro
- search management
- search mode
- search peer
- search peer replication
- Search Processing Language
- search scheduler
- search time
- search timeline
- search view
- searchability
- searchable
- segment
- send to background
- sequence template
- series
- server
- server class
- Settings
- SignalFlow
- SignalFx Smart Agent receiver
- Simple XML
- single-instance deployment
- single-site indexer cluster
- SmartStore
- source
- source type
- span
- span tag
- SPL
- SPL2
- SPL2 statement
- Splunk Answers
- Splunk Distribution of OpenTelemetry Collector
- Splunk OpenTelemetry Collector
- Splunk platform
- Splunk UI
- Splunk Web
- Splunk Web Framework
- Splunkbase
- splunkd
- SplunkJS Stack
- stack mode
- standalone search head
- stanza
- static captain
- streaming command
- subsearch
- summary index
T
Closing this box indicates that you accept our Cookie Policy.