Opleiding: Creating Knowledge Objects (CKO)
Creating Knowledge Objects (CKO)
This course is for knowledge managers.
The course will teach how to create knowledge objects for their search environment using the Splunk web interface. Topics will cover types of knowledge objects, the search-time operation sequence, and the processes for creating event types, workflow actions, tags, aliases, search macros, and calculated fields.
Knowledge Managers
Module 1 – Knowledge Objects & Search-time Operations
- Understand role of knowledge objects for enriching data
- Define search-time operation sequence
Module 2 – Create Event Types
- Define event types
- Create event types using three methods
- Use event types
- Find event types
- Tag event types
- Compare event types and reports
Module 3 – Create Workflow Actions
- Administer Splunk user roles
- Integrate Splunk with LDAP, Active Directory, or SAML
Module 4 – Create Tags and Aliase...