Getting Data In

how to recognize timestamp with Chinese character

jichen
Explorer

Hi,I met some log and it's date written by Chinese, like '1 五月 2013,11:10' means '1 May 2013,11:10'. Is it possible to extract the correct timestamp? Maybe modify the datetime.xml file, I have no idea how to do with this file.

Tags (1)
0 Karma

crazyeva
Contributor

hello i asked the same question after yours
and my name is jicheng
nice too meet you!

0 Karma

mchang_splunk
Splunk Employee
Splunk Employee

Currently we do not support Chinese month like 一月, ......十二月.
SPL-67688 has been created for getting supported, will be fixed in the later version.

0 Karma

crazyeva
Contributor

when can be SPL-67688 released?
and before that, may i use 'SEDCMD' to transform it to lartin charactor?

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...