SPLK-TSHOOTENT8.2 - Troubleshooting Splunk Enterprise 8.2
SPLK-TSHOOTENT8.2 - Troubleshooting Splunk Enterprise 8.2
Overview
Duration: 2.0 days
This 2-virtual day certification & training course is designed for Splunk administrators. It covers topics and techniques for troubleshooting a standard Splunk distributed deployment using the tools available on Splunk Enterprise.
This lab-oriented class is designed to help you gain troubleshooting experience before attending more advanced courses. You will debug a distributed Splunk Enterprise environment using the live system.
This course does not cover the issues surrounding Splunk Cloud, Splunk Clusters, or Splunk premium apps.
Objectives
Please refer to course overview
Content
Module 1 - Splunk Troubleshooting Methods and Tools
- Describe the Splunk troubleshooting approach
- List Splunk diagnostic resources and tools
- Create and splunk a diag
- Use RapidDiag
Module 2 - Indexing Problems
- Discover Splunk deployment topology and its server roles
- Identify where to check the Index-time pipeline status
- Use the metrics.log to clarify the index-time problem
Module 3 - Input Configuration Problems
- Data input issues
- Troubleshooting inputs with Monitoring Console
Module 4 - Deployment Problems
- Deployment server issues
- Forwarding and receiving issues
Module 5 - License, Upgrade, and User Management Problems
- Installation issues
- Upgrade considerations
- Splunk licensing issues
- Splunk roles and user management issues
Module 6 - Search Management Problems
- Troubleshoot distributed search issues
- Identify job scheduling issues
- Learn to diagnose crashing problems
- Describe how to prioritize resources for critical Splunk processes
Module 7 - User Search Problems
- Identify the types of search problems
- Isolate and troubleshoot search problems
Audience
_
Prerequisites
To be successful, students should have a solid understanding of the following courses:
- Splunk Fundamentals 1
- Splunk Fundamentals 2
OR the following single-subject courses:
- What Is Splunk?
- Intro to Splunk
- Using Fields
- Scheduling Reports and Alerts
- Visualizations
- Leveraging Lookups and Subsearches
- Search Under the Hood
- Introduction to Knowledge Objects
- Creating Knowledge Objects
- Enriching Data with Lookups
- Data Models
- Introduction to Dashboards
Students should also have completed the following courses:
- Splunk System Administration
- Splunk Data Administration
Certification
Lịch khai giảng
Form đăng ký
Các khóa đào tạo Splunk khác
Cơ hội nhận ưu đãi học phí lên tới 60%
Đăng ký tư vấn
cùng đội ngũ chuyên gia Trainocate!!
Xác nhận gửi thành công
Cảm ơn bạn đã để lại thông tin.
Đội ngũ chuyên gia của Trainocate đang trong quá trình xác nhận thông tin và sẽ kết nối với bạn trong vòng 24 giờ.
Bản quyền thuộc về Trainocate Việt Nam