{"course":{"productid":25934,"modality":1,"active":true,"language":"en","title":"Implementing Splunk Data Stream Processor (DSP)","productcode":"ISDSP","vendorcode":"SP","vendorname":"Splunk","fullproductcode":"SP-ISDSP","courseware":{"has_ekit":false,"has_printkit":true,"language":""},"url":"https:\/\/portal.flane.ch\/course\/splunk-isdsp","objective":"<ul>\n<li>Introduction to Splunk Data Stream Processor<\/li><li>Deploying a DSP cluster<\/li><li>Prepping Sources and Sinks<\/li><li>Building Pipelines - Basics<\/li><li>Building Pipelines - Deep Dive<\/li><li>Working with 3rd party Data Feeds<\/li><li>Working with Metric Data<\/li><li>Monitoring DSP Environment<\/li><\/ul>","essentials":"<p><strong>Required:<\/strong><\/p>\n<ul>\n<li><span class=\"cms-link-marked\"><a class=\"fl-href-prod\" href=\"\/swisscom\/en\/course\/splunk-sesa\"><svg role=\"img\" aria-hidden=\"true\" focusable=\"false\" data-nosnippet class=\"cms-linkmark\"><use xlink:href=\"\/css\/img\/icnset-linkmarks.svg#linkmark\"><\/use><\/svg>Splunk Enterprise System Administration <span class=\"fl-prod-pcode\">(SESA)<\/span><\/a><\/span><\/li><li><span class=\"cms-link-marked\"><a class=\"fl-href-prod\" href=\"\/swisscom\/en\/course\/splunk-seda\"><svg role=\"img\" aria-hidden=\"true\" focusable=\"false\" data-nosnippet class=\"cms-linkmark\"><use xlink:href=\"\/css\/img\/icnset-linkmarks.svg#linkmark\"><\/use><\/svg>Splunk Enterprise Data Administration <span class=\"fl-prod-pcode\">(SEDA)<\/span><\/a><\/span><\/li><\/ul><p><strong>Recommended:<\/strong><\/p>\n<ul>\n<li><span class=\"cms-link-marked\"><a class=\"fl-href-prod\" href=\"\/swisscom\/en\/course\/splunk-ased\"><svg role=\"img\" aria-hidden=\"true\" focusable=\"false\" data-nosnippet class=\"cms-linkmark\"><use xlink:href=\"\/css\/img\/icnset-linkmarks.svg#linkmark\"><\/use><\/svg>Architecting Splunk Enterprise Deployments <span class=\"fl-prod-pcode\">(ASED)<\/span><\/a><\/span><\/li><li>Working knowledge of:<ul>\n<li>Distributed system architectures<\/li><li>Apache Kafka (user level)<\/li><li>Apache Flink (user level)<\/li><li>Kubernetes (admin level)<\/li><\/ul><\/li><\/ul>","audience":"<p>This 4-day module is designed for the experienced Splunk administrators who are new to Splunk DSP.<\/p>","contents":"<p>This hands-on module provides the fundamentals of deploying a Splunk DSP cluster and designing pipelines for core use cases. It covers installation, source and sink configurations, pipeline design and backup, and monitoring a DSP environment.<\/p>\n<p><strong>Please note that this class may run across four days, in 4.5 hour sessions each day and contains 18 total hours of content.<\/strong><\/p>","outline":"<p><strong>Topic 1 &ndash; Introduction to DSP<\/strong><\/p>\n<ul>\n<li>Review Splunk deployment options and challenges<\/li><li>Describe the purpose and value of Splunk DSP<\/li><li>Understand DSP concepts and terminologies<\/li><\/ul><p><strong>Topic 2 &ndash; Deploying a DSP Cluster<\/strong><\/p>\n<ul>\n<li>List DSP core components and system requirements<\/li><li>List DSP core components and system requirements<\/li><li>Describe installation options and steps<\/li><li>Check DSP service status<\/li><li>Learn to navigate in DSP UI<\/li><li>Use scloud<\/li><\/ul><p><strong>Topic 3 &ndash; Prepping Sources and Sinks<\/strong><\/p>\n<ul>\n<li>Ingest data with DSP REST API service<\/li><li>Configure DSP source connections for Splunk data<\/li><li>Configure DSP sink connections for Splunk indexers<\/li><li>Create Splunk-to Splunk pass-through pipelines<\/li><\/ul><p><strong>Topic 4 &ndash; Building Pipelines - Basics<\/strong><\/p>\n<ul>\n<li>Describe the basic elements of a DSP pipeline<\/li><li>Create data pipelines with the DSP canvas and SPL2<\/li><li>List DSP pipeline commands<\/li><li>Use scalar functions to convert data types and schema<\/li><li>Filter and route data to multiple sinks<\/li><\/ul><p>\n \n<strong>Topic 5 &ndash; Building Pipelines - Deep Dive<\/strong><\/p>\n<ul>\n<li>Manipulate pipeline options:<\/li><li>Extract<\/li><li>Transform<\/li><li>Obfuscate<\/li><li>Aggregate and conditional trigger<\/li><\/ul><p>\n \n<strong>Topic 6 &ndash; Working with 3rd party Data Feeds<\/strong><\/p>\n<ul>\n<li>Read from and write data to pub-sub systems like Kafka<\/li><li>List sources supported with the collect service<\/li><li>Transform data from Kafka and normalize<\/li><li>Write to S3<\/li><\/ul><p>\n \n<strong>Topic 7 &ndash; Working with Metric Data<\/strong><\/p>\n<ul>\n<li>Onboard metric data into DSP<\/li><li>Transform metric data for Splunk indexers and SignalFx<\/li><li>Send metric data to Splunk indexers<\/li><li>Send metric data to Splunk SignalFx<\/li><\/ul><p>\n \n<strong>Topic 8 &ndash; Monitoring DSP Environment<\/strong><\/p>\n<ul>\n<li>Back up DSP pipelines<\/li><li>Monitor DSP environment<\/li><li>Describe steps to isolate DSP service issues<\/li><li>Scale DSP<\/li><li>Replace DSP master node<\/li><li>Upgrade DSP cluster<\/li><\/ul>","objective_plain":"- Introduction to Splunk Data Stream Processor\n- Deploying a DSP cluster\n- Prepping Sources and Sinks\n- Building Pipelines - Basics\n- Building Pipelines - Deep Dive\n- Working with 3rd party Data Feeds\n- Working with Metric Data\n- Monitoring DSP Environment","essentials_plain":"Required:\n\n\n- Splunk Enterprise System Administration (SESA)\n- Splunk Enterprise Data Administration (SEDA)\nRecommended:\n\n\n- Architecting Splunk Enterprise Deployments (ASED)\n- Working knowledge of:\n- Distributed system architectures\n- Apache Kafka (user level)\n- Apache Flink (user level)\n- Kubernetes (admin level)","audience_plain":"This 4-day module is designed for the experienced Splunk administrators who are new to Splunk DSP.","contents_plain":"This hands-on module provides the fundamentals of deploying a Splunk DSP cluster and designing pipelines for core use cases. It covers installation, source and sink configurations, pipeline design and backup, and monitoring a DSP environment.\n\nPlease note that this class may run across four days, in 4.5 hour sessions each day and contains 18 total hours of content.","outline_plain":"Topic 1 \u2013 Introduction to DSP\n\n\n- Review Splunk deployment options and challenges\n- Describe the purpose and value of Splunk DSP\n- Understand DSP concepts and terminologies\nTopic 2 \u2013 Deploying a DSP Cluster\n\n\n- List DSP core components and system requirements\n- List DSP core components and system requirements\n- Describe installation options and steps\n- Check DSP service status\n- Learn to navigate in DSP UI\n- Use scloud\nTopic 3 \u2013 Prepping Sources and Sinks\n\n\n- Ingest data with DSP REST API service\n- Configure DSP source connections for Splunk data\n- Configure DSP sink connections for Splunk indexers\n- Create Splunk-to Splunk pass-through pipelines\nTopic 4 \u2013 Building Pipelines - Basics\n\n\n- Describe the basic elements of a DSP pipeline\n- Create data pipelines with the DSP canvas and SPL2\n- List DSP pipeline commands\n- Use scalar functions to convert data types and schema\n- Filter and route data to multiple sinks\n\n \nTopic 5 \u2013 Building Pipelines - Deep Dive\n\n\n- Manipulate pipeline options:\n- Extract\n- Transform\n- Obfuscate\n- Aggregate and conditional trigger\n\n \nTopic 6 \u2013 Working with 3rd party Data Feeds\n\n\n- Read from and write data to pub-sub systems like Kafka\n- List sources supported with the collect service\n- Transform data from Kafka and normalize\n- Write to S3\n\n \nTopic 7 \u2013 Working with Metric Data\n\n\n- Onboard metric data into DSP\n- Transform metric data for Splunk indexers and SignalFx\n- Send metric data to Splunk indexers\n- Send metric data to Splunk SignalFx\n\n \nTopic 8 \u2013 Monitoring DSP Environment\n\n\n- Back up DSP pipelines\n- Monitor DSP environment\n- Describe steps to isolate DSP service issues\n- Scale DSP\n- Replace DSP master node\n- Upgrade DSP cluster","skill_level":"Beginner","version":"1.2","duration":{"unit":"d","value":0,"formatted":"18 hours"},"pricelist":{"List Price":{"DE":{"country":"DE","currency":"EUR","taxrate":19,"price":2000},"CH":{"country":"CH","currency":"CHF","taxrate":8.1,"price":2600}}},"lastchanged":"2025-07-29T12:18:09+02:00","parenturl":"https:\/\/portal.flane.ch\/swisscom\/en\/json-courses","nexturl_course_schedule":"https:\/\/portal.flane.ch\/swisscom\/en\/json-course-schedule\/25934","source_lang":"en","source":"https:\/\/portal.flane.ch\/swisscom\/en\/json-course\/splunk-isdsp"}}