我需要幫助,因爲我是日誌解析的新手。我試圖提取所有具有200狀態的日誌行,並在15:35之前15小時的時間戳。我無法弄清楚要使用的正則表達式。解析nginx日誌中的時間戳
這裏是日誌的示例:
198.104.78.160 [26/DEC/2016:15:24:12 -0500] 200 200 190.50.175.65:8080 testtest.com GET/API/bid_request?feed = 1 & auth = qwerty & ip = 85.194.119.3 & ua = Mozilla%2F5.0 +%28Windows + NT + 6.1%3B + Win64%3B + x64%29 + AppleWebKit%2F537.36 +%28KHTML% 2C + like + Gecko%29 + Chrome%2F48.0.2564.97 + Safari%2F537.36 & lang = tr-TR%2Ctr%3Bq%3D0.8%2Cen-US%3Bq%3D0.6%2Cen%3Bq% 3D0.4 & ref = http%3A%2F%2Fserve.pop.net%2Fs HTTP/1.0 - - - 174.194.36.141 - 0.109-0.009 US /