Splunk Search

My curl searches result in "Unparsable URI-encoded request data". Is curl version 7.15.5 unsupported?

benjaminw
New Member

My curl searches result in the output

Unparsable URI-encoded request data

I see that many of the curl searches on this site include the switch --data-urlencode, but when I include this in my searches, curl replies that the feature is unknown. My curl version is 7.15.5, and the latest version available is 7.49ish. Can anyone confirm that the --data-urlencode feature is necessary to perform some searches, or that my version of curl is outdated for Splunk queries?

Many thanks!

Tags (4)
0 Karma
1 Solution

jkat54
SplunkTrust
SplunkTrust

You will not require --data-urlencode if you want to encode your own url manually

for example... equals sign (=) becomes %3d once encoded.

You can use an online encoder like this one instead of --data-urlencode
http://meyerweb.com/eric/tools/dencoder/

When i encode the url of my answer i get:
https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465

So now I could use:

curl -k 'https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465'

View solution in original post

jkat54
SplunkTrust
SplunkTrust

You will not require --data-urlencode if you want to encode your own url manually

for example... equals sign (=) becomes %3d once encoded.

You can use an online encoder like this one instead of --data-urlencode
http://meyerweb.com/eric/tools/dencoder/

When i encode the url of my answer i get:
https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465

So now I could use:

curl -k 'https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465'

benjaminw
New Member

Jkat54, thank you! This encoding site is exactly what I needed!

0 Karma

jkat54
SplunkTrust
SplunkTrust

You are very welcome @benjaminw

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Level Up Your .conf25: Splunk Arcade Comes to Boston

With .conf25 right around the corner in Boston, there’s a lot to look forward to — inspiring keynotes, ...

Manual Instrumentation with Splunk Observability Cloud: How to Instrument Frontend ...

Although it might seem daunting, as we’ve seen in this series, manual instrumentation can be straightforward ...

Take Action Automatically on Splunk Alerts with Red Hat Ansible Automation Platform

Ready to make your IT operations smarter and more efficient? Discover how to automate Splunk alerts with Red ...