All Apps and Add-ons

Why does stats commands escape strings to html character?

kyoung2580
Explorer

step1: search commands return strings that has url encoded character

1.png

step2: after used urldecode funtion

2.png

step3: after used stats commands

3.png

 

what can i do? Any help is highly appreciated.:)

 

step4: I tried using decrypt2 app, but it doesn't work if the string is long. 

4.png

 

5.png

Labels (2)
Tags (4)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Part of this is to do with the way data is presented, particularly when there are html tags included. The data is probably still there in its original format - depending on what you ultimately trying to do, does this matter?

0 Karma

kyoung2580
Explorer

I just want result that is easy to read.:)

0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

@kyoung2580 

your Url decoding works fine. But your data is HTML encoded also. So you need to do html encoding. 

Let me check I have any solution for this,

KV

0 Karma

kyoung2580
Explorer

I tried using decrypt2 app, but it doesn't work if the string is long.:)

0 Karma

inventsekar
SplunkTrust
SplunkTrust

You meant to say that, the "stats count by param" is not counting as expected?!?!

can you copy paste few examples of the "param" field, thanks. 

 

 


Best Regards,
Sekar
my youtube channel for Splunk Newbie Learnings
https://www.youtube.com/@SiemNewbies101/videos

the rex videos playlist: https://www.youtube.com/watch?v=rXT35CnWorw&list=PLIJcAov3YzES8PJSX8gZ8cTHWsjh8KeyG

 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma

kyoung2580
Explorer

Stats results are accurate. I just want result that is easy to read.:)

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...