Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Splunk Fundamentals 3 Training | Splunk Training for Splunk
Rating: 4.7 out of 5(21 ratings)
288 students

Splunk Fundamentals 3 Training | Splunk Training for Splunk

Splunk Fundamentals 3 Training | Splunk Enterprise Admin Exam Prep | Splunk v.9.2
Last updated 7/2024
English
English [Auto],

What you'll learn

  • This course was designed to take a Splunk power user to the next level.
  • In this course, you will continue to grow your Splunk knowledge and advance your SPL build outs.
  • You will get further insight into the Splunk platform and learn to leverage even more options in Splunk!
  • Eval
  • Eventstats and Streamstats
  • Appendpipe
  • The Rest Command
  • Data Masking
  • Acceleration
  • The _internal Index
  • Working with JSON Data

Course content

1 section8 lectures2h 6m total length
  • Eval Command21:23

    Master the eval command in Splunk fundamentals 3, creating and transforming fields, converting data with time, string, and hex functions, and validating results with make results and printf.

  • Eventstats and Streamstats12:30

    Explore the difference between stats count and stats list, and learn to apply eventstats and streamstats to compute total bytes by host and classify high or low.

  • Appendpipe8:01

    Explore the append pipe and field summary in Splunk, using bin to segment time, stats to count by action, and total actions per day or week.

  • The Rest Command9:31

    Master the rest command to query the Splunk REST API, pull endpoint data, select fields like roles and apps, and join results to build insightful dashboards.

  • Data Masking11:55

    Mask sensitive data in Splunk using set and transforms conf with regex-based masking of pii, route data pre-ingestion, and use eval for optional checks.

  • Acceleration21:41

    Accelerate Splunk queries by using report acceleration, summary indexing, and data model acceleration. Use t stats on tcid files for speed.

  • The _internal Index22:56

    Explore Splunk's internal indexes, including metrics, audit, and introspection, and learn to query internal logs with spl, build searches, and create dashboards for license usage and errors.

  • Working with JSON Data18:15

    Explore how Splunk handles JSON and XML data, extract fields with XPath and path commands, and transform tabular input with multi kV to build dashboards and visualizations.

  • Fundamentals 3 Quiz

Requirements

  • Ableversity's Splunk Fundamentals 1
  • Ableversity's Splunk Fundamentals 2
  • The above are recommended but not required

Description

Splunk Fundamentals 3: Advance to Enterprise Administration Excellence

Welcome to Ableversity's Splunk Fundamentals 3 training course, where advanced power users transform into enterprise administrators. This expert-level course is developed under the oversight of Michael Bentley, "The Splunk Doctor," one of the most respected Splunkers in the world, ensuring you receive instruction that reflects the highest standards in the industry.

Why This Course Stands Apart

This is where your Splunk journey reaches new heights. Learning from industry leaders who've mastered enterprise-level Splunk deployments, you'll gain the sophisticated knowledge and advanced techniques needed to manage and optimize Splunk at scale. This course goes beyond standard training to provide real-world insights that only come from professionals operating at the enterprise administration level.

What You'll Master

Through 8 intensive lessons, you'll develop advanced proficiency in complex SPL commands, performance optimization, security practices, and data management. You'll gain deep insight into the Splunk platform's architecture and learn to leverage powerful administrative features that separate good administrators from great ones.

Master critical advanced concepts including sophisticated eval command usage, eventstats and streamstats commands, the appendpipe command, the rest command, data masking techniques, acceleration strategies, leveraging the _internal index, and working with JSON data.

Your Path to Certification

This course is specifically designed for the Splunk Enterprise Administration Certification track and follows the official blueprint for the Splunk Enterprise Admin Certification exam offered by PearsonVUE. Our students consistently report passing their certification exams after completing this course, a testament to the enterprise-grade training you'll receive.

Join Our Community

Learning doesn't stop when the videos end. Connect with us on LinkedIn, X, and Slack, or visit our website for additional resources and support. We're committed to your success and encourage you to reach out with any questions or concerns. We're here to help you succeed.


Enroll today and complete your journey to Splunk enterprise administration mastery with the guidance of true industry leaders.

Who this course is for:

  • Splunk users looking to cover the Splunk User Certification exam topics.