This command converts from various codecs to utf-8 (unicode) readable by Splunk.
Usage >.
All supported codecs listed in list at the following link 'http://docs.python.org/2/library/codecs.html'.
*notes:
'*' (astrisk) not supported as field argument.
Default field is '_raw', default codec set by system's language configuration.
Will be happy to have some feedback or suggestions.
Tested:
Language: hebrew codec 'cp1255' or as known 'Windows-1255'
OS: Windows 7 64bit - locale (he-IL,cp1255)
Splunk: 5.0.2
I'll be glad to hear how it works with other languages like Russian or Other.