Hello,
I'm having an issue when trying to filter events based on accented characters.
For instance if I look at the ingested events, `index=my_index sourcetype=my_source` , I will be able to see the events that have the field value I'm looking for:
... asset_name ...
... D. João ...
If I try to filter the events at search time `index=my_index sourcetype=my_source asset_name="D. João"` , the "**No results found.**" message is displayed, the same applies if I select the desired field value from the field's list on the left.
How can I get this to work?
I've looked for similar questions here on the Splunk Answers forum but it mainly points for the sourcetype encoding, which I think might not be the issue, since the events seem to be properly encoded.
Thanks in advance!
↧