Ok I think I have pieced together a solution but would appreciate one last ( hopefully ) piece of wisdom.
the host section of the log can look like any of the following examples
blah blah H=(10.21.32.43) [192.168.8.34] blah blah blah H=([10.21.32.43]) [192.168.8.34] blah blah blah H=mailsrvr.mail.com [192.168.8.34] blah
The data I want to assign is the number in the square brackets i.e. 192.168.8.34
How would I go about pattern matching to extract this i.e ip address in square brackets after space following initial text following H=
Many Thanks, Steve
In reply to Re^2: Process mail logs
by stevbutt
in thread Process mail logs
by stevbutt
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |