Installation

How do I set ANSI encoding for a specific index?

dennisaraujo
Path Finder

Hello!

I need to use ANSI encoding files, Splunk index configuration files with invalid.
How do I set ANSI encoding for a specific index?

Thanks.

0 Karma
1 Solution

rafamss
Contributor

dennisaraujo
Path Finder

I set CHARSET = AUTO, but it did not work.
How do I change to ANSI encoding, only the index test?

Thanks.

0 Karma

rafamss
Contributor

Hi dennisaraujo,

By default, Splunk index the file using UTF-8. All configuration about index data must be in props.conf file. Some like this:

[sourcetype::testinput]
CHARSET=ISO-8859-7

The configuration for the index only, is not supported for props.conf, only host, source or sourcetype.

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...