Splunk Search

Non English characters are not indexed ?

highsplunker
Contributor

Hey guys,
It seems that if a field in Splunk index contains Non English characters - the search is very slow.
I would say it's not indexed.
How so?
Thanks in advance.

Tags (1)
0 Karma

HiroshiSatoh
Champion

Language is irrelevant. Character code is important.
Splunk can index most character codes.

https://docs.splunk.com/Documentation/Splunk/7.2.0/Data/Configurecharactersetencoding

0 Karma

highsplunker
Contributor

Why it's not by default? Very strange.

Trying to implement your advice anyway.
Thanks a lot!
I'll come back with the results!

0 Karma

highsplunker
Contributor

Very very sad if true.

0 Karma

highsplunker
Contributor

Poor support.

0 Karma

highsplunker
Contributor

Guys really important...

0 Karma

highsplunker
Contributor

He splunkers,
No answer?

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...