Quantcast
Channel: Q&A related to Splunk for F5
Viewing all articles
Browse latest Browse all 39

secondary date time field in F5 LTM message

$
0
0

I am trying to extract a second date and time field from an F5 LTM message into a field (or fields).

the message looks like this...

Certificate 'abc.123.com' in file abc.123.com.crt will expire on Thu Jun 14 23:59:59 2012 GMT

the message already has auto date time extracted for the time the message occurs, but I would like to extract the date and time the certificate is expiring to do some math (certs expiring in 30/60/90 days), certs expired (7,30,60 )days ago.


Viewing all articles
Browse latest Browse all 39

Latest Images

Trending Articles



Latest Images