Splunk Search

My curl searches result in "Unparsable URI-encoded request data". Is curl version 7.15.5 unsupported?

benjaminw
New Member

My curl searches result in the output

Unparsable URI-encoded request data

I see that many of the curl searches on this site include the switch --data-urlencode, but when I include this in my searches, curl replies that the feature is unknown. My curl version is 7.15.5, and the latest version available is 7.49ish. Can anyone confirm that the --data-urlencode feature is necessary to perform some searches, or that my version of curl is outdated for Splunk queries?

Many thanks!

Tags (4)
0 Karma
1 Solution

jkat54
SplunkTrust
SplunkTrust

You will not require --data-urlencode if you want to encode your own url manually

for example... equals sign (=) becomes %3d once encoded.

You can use an online encoder like this one instead of --data-urlencode
http://meyerweb.com/eric/tools/dencoder/

When i encode the url of my answer i get:
https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465

So now I could use:

curl -k 'https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465'

View solution in original post

jkat54
SplunkTrust
SplunkTrust

You will not require --data-urlencode if you want to encode your own url manually

for example... equals sign (=) becomes %3d once encoded.

You can use an online encoder like this one instead of --data-urlencode
http://meyerweb.com/eric/tools/dencoder/

When i encode the url of my answer i get:
https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465

So now I could use:

curl -k 'https%3A%2F%2Fanswers.splunk.com%2Fanswers%2F418333%2Fmy-curl-searches-result-in-unparsable-uri-encoded.html%23answer-418465'

benjaminw
New Member

Jkat54, thank you! This encoding site is exactly what I needed!

0 Karma

jkat54
SplunkTrust
SplunkTrust

You are very welcome @benjaminw

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...