CÔNG TY TNHH TRAINOCATE VIỆT NAM
SPLK-PUSRFS - Power User Fast Start

SPLK-PUSRFS - Power User Fast Start

SPLK-PUSRFS - Power User Fast Start

Overview

Duration: 4.0 days

This Power User "Fast Start" course covers over 60 commands, functions, and knowledge objects to provide users with actionable information about searching best practices and knowledge management. Students will learn how to effectively utilize time in searches, work with different time zones, use transforming commands and eval functions to calculate statistics, compare field values with eval functions and eval expressions, manipulate output, normalize fields and field values, correlate and filter data from multiple sources, and create, manage, and share knowledge objects.

Objectives

  • Utilize over 60 commands and functions to transform, manipulate, normalize, correlate, and filter data.
  • Filter data using time modifiers and time commands and use formatting functions to accommodate various time formats.
  • Calculate statistics using transforming commands and mathematical and statistical eval functions.
  • Compare, manipulate, and normalize data using several commands including the all-powerful eval command and an array of statistical, comparison, conditional, and formatting functions.
  • Calculate co-occurrence between fields and analyze data from multiple datasets.
  • Create, curate, manage and share knowledge objects.

Content

Topic 1 – Working with Time

  • Formatting Time
  • Comparing Index Time versus Search Time
  • Using Time Commands
  • Working with Time Zones

Topic 2 – Statistical Processing

  • What is a Data Series?
  • Transforming Data
  • Manipulating Data with eval
  • Formatting Data

Topic 3 – Comparing Values

  • Using eval to Compare
  • Filtering with where

Topic 4 – Result Modification

  • Manipulating Output
  • Modifying Results Sets
  • Managing Missing Data
  • Modifying Field Values
  • Normalizing with eval

Topic 5 – Correlation Analysis

  • Calculate Co-Occurrence Between Fields
  • Analyze Multiple Datasets

Topic 6 – Creating Knowledge Objects

  • Knowledge Objects and Search-time Operations
  • Creating Event Types
  • Using Event Type Builder
  • Creating Workflow Actions
  • Creating Tags and Aliases
  • Creating Search Macros

Topic 7 – Creating Field Extractions

  • Using the Field Extractor
  • Creating Regex Field Extractions
  • Creating Delimited Field Extractions

Topic 8 – Data Models

  • Introducing Data Model Datasets
  • Designing Data Models
  • Creating a Pivot
  • Accelerating Data Models

 

Audience

The course is intended for students or anyone who wants to learn the basics of Splunk

Prerequisites

To be successful, students should have a solid understanding of the following:

  • What Is Splunk?
  • Intro to Splunk
  • Using Fields
  • Intro to Knowledge Objects
  • Scheduling Reports and Alerts
  • Visualizations

RECOMMENDED: Splunk Foundation Fast Start

Certification

Lịch khai giảng

Form đăng ký

Bằng cách nhấn nút "ĐĂNG KÝ", tôi hoàn toàn đồng ý với Chính sách bảo mật

Các khóa đào tạo Splunk khác

Bản quyền thuộc về Trainocate Việt Nam

back to top