Opleidingen
56.613
resultaten
Statistical Processing (SSP)
This course is for Splunk users, analysts, and administrators who want to advance their data analysis skills using Splunk’s statistical commands.
This course covers essential statistical functions...
This course is for Splunk users, analysts, and administrators who want to advance their data analysis skills using Splunk’s statistical commands.
This course covers essential statistical functions and commands such as stats, eventstats, streamstats, and tstats with a focus on summarizing, analyzing, and reporting on large datasets.
This course is also part of the following bundle: Splunk Power User Fast Start (POWER-U)
- Users/Analysts
- Administrators
- Engineers
Module 1 - What is a Data Series
- Introduce data series
- Explore the difference between single-series, multi-series, and time series data series
Module 2 - Transforming Data
- Use the chart, timechart, top, rare, and stats commands to transform events into data tables
Module 3 – Statistical Aggregation with the stats Command
- Define aggregation
- Explore the stats command and eight of its functions
Module 4 – Manipulating Data with the eval Command
- Explore the eval command
- Ex...
€500
Klassikaal
3 uren
Comparing Values (SCV)
Comparing Values (SCV)
This course is designed for Splunk users, analysts, and administrators who want to compare and analyze datasets.
You will use the eval, where, and if commands, along with the like and case functions to compare and visualize datasets.
- Users/Analysts
- Administrators
- Engineers
Module 1 - Using eval to Compare
- Explore the eval command
- Explain evaluation functions
- Identify and use comparison, conditional, and text functions
- Normalize data with the case function
- Use the fieldformat command to format field values
Module 2 - Filtering with where & Managing Missing Data
- Use the where command to filter results
- Use wildcards with the where command
- Filter fields with the information functions, isnull and isnotnull
- Manage missing data with the fillnull...
€500
Klassikaal
3 uren
Result Modification (SRM)
Result Modification (SRM)
This course is designed for Splunk users, analysts, and administrators who want to learn how to modify and manipulate output and normalize data.
You will learn how to use the untable, xyseries, appendpipe, eventstats, and streamstats commands to modify result sets and use the eval command and eval functions to manipulate field values and normalize data across multiple data sources.
- Users/Analysts
- Administrators
- Engineers
Module1 - Manipulating Output
- Convert a 2-D table into a flat table with the untable command
- Convert a flat table into a 2-D table with the xyseries command
Module 2 - Modifying Result Sets
- Append data to search results with the appendpipe command
- Calculate event statistics with the eventstats command
- Calculate "streaming" statistics with the streamstats command
Module 3 – Modifying Field Values
- Understand the eval command
- Use conversion and text eval functions to modify...
€500
Klassikaal
3 uren
Leveraging Lookups and Subsearches (LLS)
This course is designed for Splunk users, analysts, and administrators who want to enhance their searches with lookups and subsearches.
You will learn how to use lookups to enrich your data and how...
This course is designed for Splunk users, analysts, and administrators who want to enhance their searches with lookups and subsearches.
You will learn how to use lookups to enrich your data and how to write subsearches to correlate and filter data from multiple sources.
- Users/Analysts
- Administrators
- Engineers
Module 1 – Using Lookup Commands
- Understand lookups
- Use the inputlookup command to search lookup files
- Use the lookup command to invoke field value lookups
- Use the outputlookup command to create lookups
- Invoke geospatial lookups in search
Module 2 – Adding a Subsearch
- Define subsearch
- Use subsearch to filter results
- Identify when to use subsearch
- Understand subsearch limitations and alternatives
Module 3 – Using the return Command
- Use the return command to pass value...
€500
Klassikaal
3 uren
Correlation Analysis (SCLAS)
Correlation Analysis (SCLAS)
This course is designed for Splunk power users who want to calculate co-occurrence between fields and analyze data from multiple datasets.
You will learn how to use the transaction, append, appendcols, union, and join commands to correlate events and combine data from various sources.
- Users/Analysts
- Administrators
- Engineers
Topic 1 - Calculate Co-Occurrence Between Fields
- Understand transactions
- Explore the transaction command
Topic 2 - Analyze Multiple Data Sources
- Understand subsearch
- Use the append, appendcols, union, and join commands to combine, analyze, and compare multiple data sources
€500
Klassikaal
3 uren
Search Optimization (SSO)
This course is for power users who want to improve search performance.
The course will cover how search modes affect performance, how to create an efficient basic search, how to accelerate reports...
This course is for power users who want to improve search performance.
The course will cover how search modes affect performance, how to create an efficient basic search, how to accelerate reports and data models, and how to use the tstats command to quickly query data.
- Knowledge Managers
- Users/Analysts
Module 1 - Optimize Search
- Understand how search modes affect performance
- Examine the role of the Splunk Search Scheduler
- Review general search practices
Module 2 - Report Acceleration
- Define acceleration and acceleration types
- Understand report acceleration and create an accelerated report
- Reveal when and how report acceleration summaries are created
- Search against acceleration summaries
Module 3 - Data Model Acceleration
- Understand data model acceleration
- Accelerate...
€500
Klassikaal
3 uren
Creating Knowledge Objects (CKO)
Creating Knowledge Objects (CKO)
This course is for knowledge managers.
The course will teach how to create knowledge objects for their search environment using the Splunk web interface. Topics will cover types of knowledge objects, the search-time operation sequence, and the processes for creating event types, workflow actions, tags, aliases, search macros, and calculated fields.
Knowledge Managers
Module 1 – Knowledge Objects & Search-time Operations
- Understand role of knowledge objects for enriching data
- Define search-time operation sequence
Module 2 – Create Event Types
- Define event types
- Create event types using three methods
- Use event types
- Find event types
- Tag event types
- Compare event types and reports
Module 3 – Create Workflow Actions
- Administer Splunk user roles
- Integrate Splunk with LDAP, Active Directory, or SAML
Module 4 – Create Tags and Aliase...
€500
Klassikaal
3 uren
Creating Field Extractions (CFE)
Creating Field Extractions (CFE)
This course is for knowledge managers who want to learn about field extraction and the Field Extractor (FX) utility.
The course will cover when certain fields are extracted and how to use the FX to create regex and delimited field extractions.
Knowledge Managers
Module 1 - Use the Field Extractor
- Explore the different types of extracted fields and when they are extracted
- Define the Splunk Web Field Extractor (FX)
Module 2 - Create Regex Field Extractions
- Identify basics of regular expressions (regex)
- Understand the regex field extraction workflow
- Edit regex for field extractions
Module 3 - Creating Delimited Field Extractions
- Identify delimited field values in event data
- Explore the delimited field extraction workflow
- Explain th...
€500
Klassikaal
3 uren
Data Models (SDM)
Data Models (SDM)
This three-hour course is for knowledge managers who want to learn how to create and accelerate data models. Topics will cover datasets, designing data models, using the Pivot editor, and accelerating data models.
- Introducing Data Model Datasets
- Designing Data Models
- Creating a Pivot
- Accelerating Data Models
Topic 1 - Introducing Data Model Datasets
- Understand data models
- Add event, search, and transaction datasets to data models
- Identify event object hierarchy and constraints
- Add fields based on eval expressions to transaction datasets
Topic 2 - Designing Data Models
- Create a data model
- Add root and child datasets to a data model
- Add fields to data models
- Test a data model
- Define permissions for a data model
- Upload/download a data model for backup and sharing
Topic 3 - Cr...
€500
Klassikaal
3 uren
Introduction to Dashboards (ITD)
Introduction to Dashboards (ITD)
This four-and-a-half hour course teaches students how to create dashboards in Dashboard Studio. Students will learn the basics of the dashboard source code, dashboard layout types, how to select a data source, and improve dashboard performance.
- Dashboard Framework
- Dashboard Layouts
- Data Sources
- Event Annotations
- Improving Performance
Topic 1 – Create a Prototype
- Describe dashboard framework
- Compare layout types
- Add visualizations
- Manage views
Topic 2 – Selecting a Data Source
- Define the dataSources stanza
- Explain how mock data is used
- Create event annotations
Topic 3 – Improving Performance
- Identify performance improvement methods
- Use tstats and an accelerated data model
- Create base and chain searches
- Set dashboard defaults
€500
Klassikaal
5 uren