Installation

French users : how to get "é" instead of "/xE9"

o_calmels
Communicator

Hi, I write this question in English to allow evry users to access it.

I get logs from Windows application installed on a french Windows system.
When Splunk indexes these logs, french caracters are displayed with there code not the caracter itself.
I Found that it should be du to the character encoding utf-8 instead of latin-1.

Does somedy knows where I can change this encoding and what should be the result over my splunk install ?

Thanks.

Tags (2)
0 Karma

ntbahriti_splun
Splunk Employee
Splunk Employee

Edit $SPLUNK_HOME/etc/system/local/props.conf and add the following stanza:

[default]
CHARSET = latin-1

If you have a specific application, perform the same modification under $SPLUNK_HOME/etc/apps/<APP_NAME>/local/props.conf

Then restart Splunk.

Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Thanks for the Memories! Splunk University, .conf25, and our Community

Thank you to everyone in the Splunk Community who joined us for .conf25, which kicked off with our iconic ...

Data Persistence in the OpenTelemetry Collector

This blog post is part of an ongoing series on OpenTelemetry. What happens if the OpenTelemetry collector ...

Introducing Splunk 10.0: Smarter, Faster, and More Powerful Than Ever

Now On Demand Whether you're managing complex deployments or looking to future-proof your data ...