Hello,
You might be able to extract fields with using Japanese field names in this case.
I don't recommend it.So, Hajime-san is right. But... you can (I confirm it with Splunk 4.1.7.)
And you keep in mind that Splunk cannot handle any field names containing space characters.
Could you try to change " "(space) to "_"(underscore) in transforms.conf settings?
For example,
[argus_extractions_disk]
DELIMS=","
FIELDS="タイムゾーン","記録時間","システム名","タイム・スタンプ","ディスク名","マウント・ポイント","ファイル・システム・タイプ","サイズ_(MB)","使用_ディスク_(MB)","使用 ディスク_率","フリー・_ディスク (MB)","フリー・_ディスク_率","合計_i_ノード","使用済み_i_ノード数","i_ノード使用率","空き_i_ノード","フリーの_i_ノード_率"
I hope it will help your splunking!
Thanks.
Kenichi Suda
... View more