Splunk Fundamentals 3: Course Topics

Download as pdf or txt
Download as pdf or txt
You are on page 1of 1

Splunk Fundamentals 3

Module 4 – Exploring Alerts


The Splunk Fundamentals 3 course picks up where Splunk
Fundamentals 2 leaves off, focusing on additional search commands § Referencing lookups in alerts
as well as on advanced use of knowledge objects. Major topics § Outputting alert results to a lookup
include advanced statistics and eval commands, advanced lookup § Logging and indexing searchable alert events
topics, advanced alert actions, using regex and erex to extract fields, § Using a webhook alert action
using spath to work with self-referencing data, creating nested
macros and macros with event types, and accelerating reports and Module 5 – Advanced Field Creation and Management
data models. § Using regex
§ Using the erex command
Course Topics § Using the rex command
§ Identifying regex best practices
§ Statistical Commands
§ eval Commands Module 6 – Working with Self-Describing Data and Files
§ Lookups § Using the spath command
§ Alert Actions § Using the eval command with the spath function
§ Advanced Field Creation and Management § Extracting fields from table-formatted events with multikv
§ Working with Self-Describing Data and Files Module 7 – Advanced Search Macros
§ Advanced Macros § Using nested search macros
§ Using Acceleration Options § Previewing search macros before executing
§ Using tags and event types in search macros
Course Prerequisites
Splunk Fundamentals Part 2 Module 8 – Using Acceleration Options: Reports and
Summary Indexing
Class Format § Using report acceleration
Instructor-led lecture with labs, delivered via virtual classroom or § Using summary indexing
at your site Module 9 – Using Acceleration Options: Data Models and
tsidx Files
Course Objectives § Exploring data models using the datamodel command
Module 1 – Exploring Statistical Commands § Using data model acceleration
§ Performing statistical analysis with functions of the stat § Working with tsidx files using the tstats command
command
§ Using fieldsummary About Splunk Education
§ Using appendpipe
§ Using eventstats Splunk classes are designed for specific roles such as Splunk
§ Using streamstats Administrator, Developer, User, Knowledge Manager, or
Architect.
Module 2 – Exploring eval Command Functions
Certification Tracks
§ Using conversion functions
Our certification tracks provide comprehensive education for
§ Using data and time functions Splunk customer and partner personnel according to their areas
§ Using string functions of responsibility.
§ Using comparison and conditional functions
§ Using informational functions To view all of Splunk Education's course offerings, or to register
for a course, go to http://www.splunk.com/goto/education
§ Using statistical functions
To contact us, email [email protected]
§ Using mathematical functions
§ Using cryptographic functions
About Splunk Splunk Inc.
Module 3 – Exploring Lookups Splunk is software that indexes, 250 Brannan
manages and enables you to
§ Including and excluding events based on lookup values search data from any application, San Francisco, CA 94107
§ Using KV Store lookups server or network device in real 866.GET.SPLUNK
time. (866.438.7758)
§ Using external lookups
§ Using geospatial lookups [email protected]
Visit our website at
[email protected]
§ Using database lookups www.splunk.com to download your
§ Understanding best practices for lookups own free copy.

Splunk Education Services

You might also like