I need to extract fields for a wireless controller, which is the Extreme identifier, the following is the sample format.
Feb 25 03:00:40 controller events: Radius Client Radius Response: Accepted: UserID:xxxxxx61858D, Client MAC:[xx:xx:xx:61:85:8D] 3
Feb 25 03:00:40 ewc01 events: Radius Client RADIUS server authenticated login (Access Accepted). 3
There are other formats as well, please help me with this
There may be an app for that. Check out https://splunkbase.splunk.com/app/981