data administration
Participant | all Splunk administrators who want to connect new data sources to Splunk |
---|---|
Duration | 8 hours |
Implementation form |
|
Technical requirements | Splunk test server (e.g. AWS) with artificial, automatically generated data, to which participants are granted access for a certain time after logging in |
Prior knowledge | advanced search and reporting, creating knowledge object |
Procedure |
|
data administration
Participant:
all Splunk administrators who want to connect new data sources to Splunk
Duration:
8 hours
Implementation Form:
- Classroom training
- Alternatively virtual training with trainer
Technical requirement:
Splunk test server (e.g. AWS) with artificial, automatically generated data, to which participants are granted access for a certain time after logging in
Prior Knowledge:
advanced search and reporting, creating knowledge object
Procedure:
- introduction to data administration
- connecting data sources in a test environment
- connecting data sources in production
- forwarder management
- monitoring log files
- network or scripts as data source
- data sources without forwarders
- parse, filter and manipulate data