There are plenty of answers to the question of how to convert Hex into ASCII using a combination of rex/replace and urldecode.
However, I am looking to do the opposite. I have binary data in a field and I would like to convert it to hex values.
Sample data:
����$P/�Dl ������E��4K@��v���3>n� �
I do not simply want to strip this data because I actually would like to do something with it once it's been converted.
I also would like to do it preferably using an eval
statement so I can create a field calculation based on this.
Any thoughts or ideas?
It is too late; it went in wrong. Fix incoming data like this:
https://docs.splunk.com/Documentation/Splunk/latest/Data/Configurecharactersetencoding