Splunk Online Training

Splunk Course Content

This course teaches you how to search and navigate in Splunk to create reports and dashboards, both using Splunk’s searching and reporting commands and using the product’s interactive Pivot tool. Scenario-based examples and hands-on challenges will enable you to create robust searches, reports, and charts.

Course Topics

  • Introduction to Splunk’s interface
  • Basic searching
  • Using fields in searches
  • Search fundamentals
  • Transforming commands
  • Creating reports and dashboards
  • Datasets
  • The Common Information Model (CIM)
  • Creating and using lookups
  • Scheduled Reports
  • Alerts
  • Using Pivot

Course Objectives

Introduction

  • How to Use the eLearning Interface
  • Overview of Buttercup Games Inc.

What is Splunk?

  • Splunk components
  • Installing Splunk
  • Getting data into Splunk
  • Module 3 – Introduction to Splunk’s User Interface
  • Understand the uses of Splunk
  • Define Splunk Apps
  • Customizing your user settings
  • Learn basic navigation in Splunk

Basic Searching

  • Run basic searches
  • Use autocomplete to help build a search
  • Set the time range of a search
  • Identify the contents of search results
  • Refine searches
  • Use the timeline
  • Work with events
  • Control a search job
  • Save search results

Using Fields in Searches

  • Understand fields
  • Use fields in searches
  • Use the fields sidebar

Search Language Fundamentals

  • Review basic search commands and general search
  • practices
  • Examine the search pipeline
  • Specify indexes in searches
  • Use autocomplete and syntax highlighting
  • Use the following commands to perform searches:
    1. tables
    2. rename
    3. fields
    4. dedup
    5. sort

Using Basic Transforming Commands

  • The top command
  • The rare command
  • The stats command

Creating Reports and Dashboards

  • Save a search as a report
  • Edit reports
  • Create reports that include visualizations such as charts and tables
  • Create a dashboard
  • Add a report to a dashboard
  • Edit a dashboard

Datasets and the Common Information Model

  • Naming conventions
  • What are datasets?
  • What is the Common Information Model (CMI)?

Creating and Using Lookups

  • Describe lookups
  • Create a lookup file and create a lookup definition
  • Configure an automatic lookup

Creating Scheduled Reports and Alerts

  • Describe scheduled reports
  • Configure scheduled reports
  • Describe alerts
  • Create alerts
  • View fired alerts

Using Pivot

  • Describe Pivot
  • Understand the relationship between data models and pivot
  • Select a data model object
  • Create a pivot report
  • Create an instant pivot from a search
  • Add a pivot report to a dashboard