All Apps and Add-ons

How do I decode an HTML Encoded Character from a dbxquery?


How do I decode this character in Splunk?


I tried | eval decode=urldecode(DESC) and no change.
It's obviously a single quote (apostrophe).

It's just a string field like this:

Splunk's Favorite Color
0 Karma

Ultra Champion

A similar question at alternatives to urldecode

The following table lists the ascii7 characters as HTML entities HTML Codes Table

alt text

The HTML numbers are the Unicode numbers, so a general function should be able to convert the HTML entity to a utf-8 character but I don't see such a function. Meanwhile you can use the way described in the thread -

alt text

0 Karma
Get Updates on the Splunk Community!

Splunk Lantern | Getting Started with Edge Processor, Machine Learning Toolkit ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Enterprise Security Content Update (ESCU) | New Releases

In the last month, the Splunk Threat Research Team (STRT) has had 2 releases of new security content via the ...

Announcing the 1st Round Champion’s Tribute Winners of the Great Resilience Quest

We are happy to announce the 20 lucky questers who are selected to be the first round of Champion's Tribute ...