Getting Data In

How to determine the Operating system language?

vkmanish
Loves-to-Learn

Hi Team, Is there any way to determine the Operating system language before we ingest the logs in Splunk? 

After ingesting the logs, will correlations work on servers with operating system languages other than English ? 
Any alternate option to convert the language into English and get the output in the search head

 

Labels (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

You could create scripted inputs that somehow determine the OS language and then translate the data it reads before it is indexed by Splunk.

If the set of non-English fields is know and small enough then you could use INGEST_EVAL or FIELDALIAS settings to map them to equivalent English fields.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

What the End of Support for Splunk Add-on Builder Means for You

Hello Splunk Community! We want to share an important update regarding the future of the Splunk Add-on Builder ...

Solve, Learn, Repeat: New Puzzle Channel Now Live

Welcome to the Splunk Puzzle PlaygroundIf you are anything like me, you love to solve problems, and what ...

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...