Splunk Advanced Power User Fast Start (APU-FT)

 

Résumé du cours

This series consists of six modules totaling 18 hours and aligns with the Splunk Core Certified Advanced Power User certification.

The series consists of the following courses:

A qui s'adresse cette formation

Search Experts Knowledge Managers

Certifications

Cette formation prépare à la/aux certifications:

Pré-requis

Highly recommended prerequisites:

Note: Courses listed in the Advanced Power User Fast Start are just the delta of what's not in Power User Fast Start.

Objectifs

At the end of this course, you should be able to :

  • Use Lookup Commands
  • Add a Subsearch
  • Use the return Command
  • Understand What are Multivalue Fields
  • Create Multivalue Fields
  • Evaluate Multivalue Fields
  • Analyze Multivalue Fields
  • Optimize Search
  • Understand Report Acceleration
  • Understand Data Model Acceleration
  • Use the tstats Command
  • Understand what is a Lookup?
  • Create Lookups
  • Understand Geospatial Lookups
  • Understand External Lookups
  • Understand KV Store Lookups
  • Understand Best Practices for Lookups
  • Understand Dashboard Framework
  • Prototype
  • Understand Visualization Types
  • Modify the Source Code
  • Understand Dynamic Coloring
  • Understand Data Source Types
  • Mock Data
  • Understand event Annotations
  • Add Inputs
  • Chain Searches

Contenu

Leveraging Lookups and Subsearches (SSC)
  • Topic 1 – Using Lookup Commands
  • Topic 2 – Adding a Subsearch
  • Topic 3 – Using the return Command
Multivalue Fields (SSC)
  • Topic 1 – What are Multivalue Fields?
  • Topic 2 – Creating Multivalue Fields
  • Topic 3 – Evaluating Multivalue Fields
Search Optimization (SSC)
  • Topic 1 – Optimizing Search
  • Topic 2 – Report Acceleration
  • Topic 3 – Data Model Acceleration
  • Topic 4 – Using the tstats Command
Enriching Data With Lookups (SSC)
  • Topic 1 – What is a Lookup?
  • Topic 2 – Creating Lookups
  • Topic 3 – Geospatial Lookups
  • Topic 4 – External Lookups
  • Topic 5 – KV Store Lookups
  • Topic 6 – Best Practices for Lookups
Intro To Dashboards (SSC)
  • Topic 1 – Dashboard Framework
  • Topic 2 – Create a Prototype
  • Topic 3 – Use Dynamic Coloring
Dynamic Dashboards (SSC)
  • Topic 1 – Selecting a Data Source
  • Topic 2 – Adding Inputs
  • Topic 3 – Improving Performance
  • Topic 4 – Comparing Temporary versus Persistent Fields
  • Topic 5 – Enriching Data

Prix & Delivery methods

Formation en ligne

Durée
3 jours

Prix
  • CHF 3 300,–
  • Splunk Training Units : 300 SPC
Formation en salle équipée

Durée
3 jours

Prix
  • Suisse : CHF 3 300,–
  • Splunk Training Units : 300 SPC

Actuellement aucune session planifiée