All Apps and Add-ons

Hi! I'm using Citrix Netscaler 11.x and Splunk Enterprise Server 6.2.1. It seems some fields are not interprated (ipfix.log). Does anybody know how can I fix this??

aledissez
New Member

ipfix.log
2015-09-21 09:20:30,298 WARNING pid=2038 tid=MainThread file=IPFIXData.py:init:70 | Have not implemented parsing for 'None' of length 2 (5951:330) required for template 256.

0 Karma

itionet
New Member

Have you tried using field extraction?

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...