I've found that when writing complex regexs it helps to use /x and to say exactly what you want. This may be slightly incorrect, I don't have a perl intrepeter to check the syntax of everything with, nor do I have any of my regex refrences, since I'm at work, but here it is:
/
(\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}) # IP Address
\s+
(\S+) # ident user
\s+
(\S+) # auth user
\s+
\[ # Square brace
([^\]]+) # date
\s # space
([^\]]+) # time zone
\] # The closing square brace
\s+
" # Opening quote
((?:[^\\]
| # method
\\.)+)
\s
((?:[^\\]
| # url
\\.)+)
\s
((?:[^\\]
| # protocol
\\.)+)
" # Closing quote
\s+
(\d+) # status
\s+
(\d+) # bytes
\s+
"
((?:[^\\]
| # refer
\\.)+)
"
\s+
"
(?:[^\\]
| # platform
\\.)+
\s
(?:[^\\]
| # extended info
\\.)+
"
/x
Good luck. I'm not sure you really want a regex, other people have given pretty good ideas. I just figured I could throw in a more complete regex. It's probably a lot more sparce than necessary. -Ted
-
Are you posting in the right place? Check out Where do I post X? to know for sure.
-
Posts may use any of the Perl Monks Approved HTML tags. Currently these include the following:
<code> <a> <b> <big>
<blockquote> <br /> <dd>
<dl> <dt> <em> <font>
<h1> <h2> <h3> <h4>
<h5> <h6> <hr /> <i>
<li> <nbsp> <ol> <p>
<small> <strike> <strong>
<sub> <sup> <table>
<td> <th> <tr> <tt>
<u> <ul>
-
Snippets of code should be wrapped in
<code> tags not
<pre> tags. In fact, <pre>
tags should generally be avoided. If they must
be used, extreme care should be
taken to ensure that their contents do not
have long lines (<70 chars), in order to prevent
horizontal scrolling (and possible janitor
intervention).
-
Want more info? How to link
or How to display code and escape characters
are good places to start.
|