Installation

How do I set ANSI encoding for a specific index?

dennisaraujo
Path Finder

Hello!

I need to use ANSI encoding files, Splunk index configuration files with invalid.
How do I set ANSI encoding for a specific index?

Thanks.

0 Karma
1 Solution

rafamss
Contributor

dennisaraujo
Path Finder

I set CHARSET = AUTO, but it did not work.
How do I change to ANSI encoding, only the index test?

Thanks.

0 Karma

rafamss
Contributor

Hi dennisaraujo,

By default, Splunk index the file using UTF-8. All configuration about index data must be in props.conf file. Some like this:

[sourcetype::testinput]
CHARSET=ISO-8859-7

The configuration for the index only, is not supported for props.conf, only host, source or sourcetype.

0 Karma
Get Updates on the Splunk Community!

Observability | How to Think About Instrumentation Overhead (White Paper)

Novice observability practitioners are often overly obsessed with performance. They might approach ...

Cloud Platform | Get Resiliency in the Cloud Event (Register Now!)

IDC Report: Enterprises Gain Higher Efficiency and Resiliency With Migration to Cloud  Today many enterprises ...

The Great Resilience Quest: 10th Leaderboard Update

The tenth leaderboard update (11.23-12.05) for The Great Resilience Quest is out >> As our brave ...