Getting Data In

How to print unicode as unicode?

wegscd
Contributor

I have a JSON data source with data like this:

{"download.doc_title": "GCP-7 R\u00f3znorodnosc, R\u00f3wne Szanse Oraz Szacunek W Miejscu Pracy.pdf"}

If I look at the event syntax highlighted, it renders as I would expect:

{   [-] 
     download.doc_title:     GCP-7 Róznorodnosc, Równe Szanse Oraz Szacunek W Miejscu Pracy.pdf   
}

...but when I run any reports against, it shows up in the browser with the unicode escapes, instead of the unicode characters:

<searchcriteria> | table download.doc_title

shows

GCP-7 R\u00f3znorodnosc, R\u00f3wne Szanse Oraz Szacunek W Miejscu Pracy.pdf

how do I get it to show the Polish rendition?

GCP-7 Róznorodnosc, Równe Szanse Oraz Szacunek W Miejscu Pracy.pdf
0 Karma

ddrillic
Ultra Champion

Similar issue at Best practice for dealing with Unicode codepoints in Splunk ?

But not much help there...

0 Karma

MousumiChowdhur
Contributor
0 Karma

MousumiChowdhur
Contributor

Please set CHARSET = AUTO in your props.conf

0 Karma

wegscd
Contributor

The data is apparently being parsed correctly (remember, it displays correctly when syntax is highlighted). Will charset = auto affect parsing or display?

0 Karma

MousumiChowdhur
Contributor

Hi @wegscd!
It affects parsing.

0 Karma

wegscd
Contributor

The data has been parsed correctly. This is a display side issue.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...