Splunk Search

Splunk cannot read .log file

Azwaliyana
Path Finder

I have health check file with extension .log. When I uploaded it to Splunk, it came out like this.

Azwaliyana_0-1639636531159.png
The real file is like this

Azwaliyana_1-1639636742623.png

Does anyone know what is the problem?

 

 

0 Karma
1 Solution

isoutamo
SplunkTrust
SplunkTrust

Hi

usually this means that splunk cannot recognise CHARSET correctly. Just add this parameter to your source node's props.conf. Check CHARSET parameter and try those UTF-8 / UTF-xx versions.

r. Ismo

View solution in original post

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

usually this means that splunk cannot recognise CHARSET correctly. Just add this parameter to your source node's props.conf. Check CHARSET parameter and try those UTF-8 / UTF-xx versions.

r. Ismo

0 Karma
Get Updates on the Splunk Community!

Credit Card Data Protection & PCI Compliance with Splunk Edge Processor

Organizations handling credit card transactions know that PCI DSS compliance is both critical and complex. The ...

Stay Connected: Your Guide to July Tech Talks, Office Hours, and Webinars!

What are Community Office Hours?Community Office Hours is an interactive 60-minute Zoom series where ...

Updated Data Type Articles, Anniversary Celebrations, and More on Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...