The Splunk Fundamentals 3 course builds on previous fundamentals courses, focusing on advanced search commands, alerts, lookups, regex, spath, macros, and acceleration options. Major topics include statistical and eval functions, advanced alert actions like webhooks, using regex and erex to extract fields, spath for self-referencing data, nested macros and event types in macros. The course also covers advanced field creation, working with self-describing data, acceleration reports, data models, and tsidx files. Prerequisites include completing Splunk Fundamentals 2. The instructor-led course includes lectures and labs.
The Splunk Fundamentals 3 course builds on previous fundamentals courses, focusing on advanced search commands, alerts, lookups, regex, spath, macros, and acceleration options. Major topics include statistical and eval functions, advanced alert actions like webhooks, using regex and erex to extract fields, spath for self-referencing data, nested macros and event types in macros. The course also covers advanced field creation, working with self-describing data, acceleration reports, data models, and tsidx files. Prerequisites include completing Splunk Fundamentals 2. The instructor-led course includes lectures and labs.
The Splunk Fundamentals 3 course builds on previous fundamentals courses, focusing on advanced search commands, alerts, lookups, regex, spath, macros, and acceleration options. Major topics include statistical and eval functions, advanced alert actions like webhooks, using regex and erex to extract fields, spath for self-referencing data, nested macros and event types in macros. The course also covers advanced field creation, working with self-describing data, acceleration reports, data models, and tsidx files. Prerequisites include completing Splunk Fundamentals 2. The instructor-led course includes lectures and labs.
The Splunk Fundamentals 3 course builds on previous fundamentals courses, focusing on advanced search commands, alerts, lookups, regex, spath, macros, and acceleration options. Major topics include statistical and eval functions, advanced alert actions like webhooks, using regex and erex to extract fields, spath for self-referencing data, nested macros and event types in macros. The course also covers advanced field creation, working with self-describing data, acceleration reports, data models, and tsidx files. Prerequisites include completing Splunk Fundamentals 2. The instructor-led course includes lectures and labs.
The Splunk Fundamentals 3 course picks up where Splunk Fundamentals 2 leaves off, focusing on additional search commands § Referencing lookups in alerts as well as on advanced use of knowledge objects. Major topics § Outputting alert results to a lookup include advanced statistics and eval commands, advanced lookup § Logging and indexing searchable alert events topics, advanced alert actions, using regex and erex to extract fields, § Using a webhook alert action using spath to work with self-referencing data, creating nested macros and macros with event types, and accelerating reports and Module 5 – Advanced Field Creation and Management data models. § Using regex § Using the erex command Course Topics § Using the rex command § Identifying regex best practices § Statistical Commands § eval Commands Module 6 – Working with Self-Describing Data and Files § Lookups § Using the spath command § Alert Actions § Using the eval command with the spath function § Advanced Field Creation and Management § Extracting fields from table-formatted events with multikv § Working with Self-Describing Data and Files Module 7 – Advanced Search Macros § Advanced Macros § Using nested search macros § Using Acceleration Options § Previewing search macros before executing § Using tags and event types in search macros Course Prerequisites Splunk Fundamentals Part 2 Module 8 – Using Acceleration Options: Reports and Summary Indexing Class Format § Using report acceleration Instructor-led lecture with labs, delivered via virtual classroom or § Using summary indexing at your site Module 9 – Using Acceleration Options: Data Models and tsidx Files Course Objectives § Exploring data models using the datamodel command Module 1 – Exploring Statistical Commands § Using data model acceleration § Performing statistical analysis with functions of the stat § Working with tsidx files using the tstats command command § Using fieldsummary About Splunk Education § Using appendpipe § Using eventstats Splunk classes are designed for specific roles such as Splunk § Using streamstats Administrator, Developer, User, Knowledge Manager, or Architect. Module 2 – Exploring eval Command Functions Certification Tracks § Using conversion functions Our certification tracks provide comprehensive education for § Using data and time functions Splunk customer and partner personnel according to their areas § Using string functions of responsibility. § Using comparison and conditional functions § Using informational functions To view all of Splunk Education's course offerings, or to register for a course, go to http://www.splunk.com/goto/education § Using statistical functions To contact us, email [email protected] § Using mathematical functions § Using cryptographic functions About Splunk Splunk Inc. Module 3 – Exploring Lookups Splunk is software that indexes, 250 Brannan manages and enables you to § Including and excluding events based on lookup values search data from any application, San Francisco, CA 94107 § Using KV Store lookups server or network device in real 866.GET.SPLUNK time. (866.438.7758) § Using external lookups § Using geospatial lookups [email protected] Visit our website at [email protected] § Using database lookups www.splunk.com to download your § Understanding best practices for lookups own free copy.