Hello,
I'm trying to make use of decode() with flowing example in Splunk:
| makeresults
| eval fd="um\xc3\xb3w"
| decrypt field=fd decode('utf_8')
but not matter what I put in place of codec (even '??') I'm getting something like:
| _time |
fd |
decrypted |
| 2023-09-20 14:26:47 |
um\xc3\xb3w |
um\xc3\xb3w |
instead of decoded umów.