Splunk Boot Camp (AA-SPLUNKBC)


Course Description

Splunk is one of the first platforms to help make sense of log data. Splunk is not just a tool for IT Ops, itís a tool for developers. In fact, itís a tool for everyone whoís interested in using the power of data. There are a lot of use cases for Splunk, but first, youíll to learn what itís capable of and how to get the most of it.

If you have concerns about security and compliance, donít worry. You can still be compliant while making life easier with Splunk. Youíll just need to give everyone visibility on whatís happening with your applications in real-time or for analysis purposes. And yes, you can do all of this without giving people access to the servers.

This two-day boot camp is designed to empower you with the knowledge and skills needed to take full advantage of Splunk. This exercise-intensive course is for individuals looking to develop a deeper understanding of the tool. Our hands-on lab classroom format and real-world practice scenarios will cement your new skills with Splunkís various applications and leave you prepared to properly collect, analyze, and utilize your machine data.

Course Outline

Introduction to Splunk

  • Whatís Splunk?
  • Authentication Methods
  • Access Controls and Users
  • Products, Licensing, and Costs
  • Quick Tour Guide: User Interface

Indexes

  • Splunk Data
  • What are Indexes?
  • What are Indexers?
  • Search-Head
  • Index Clusters
  • Index Pipeline
  • Events
  • Fields and Field Extraction
  • Forwarders
  • Metrics
  • Removing Data

Splunk Architecture

  • Components of Splunk Deployments
  • Deployment Scenarios

Search Processing Language

  • What is Search Processing Language (SPL)?
  • Searching Operators
  • Search Commands
  • Search Pipeline
  • Sub-searches
  • Commonly Used Search Commands
  • Drilldowns
  • Lookups
  • Optimize Searches

Dashboard and Visualizations

  • Dashboards in Splunk
  • Creating Dashboards
  • Visualization Types
  • Search as Reports
  • Dashboards
  • Drilldown
  • Forms

Alerts

  • Creating Alerts
  • Scheduling Alerts
  • Alerts Notifications

Scheduled Reports

  • Creating Scheduled Reports

Putting the Pieces Together

  • In your final exercise, youíll configure a typical scenario when using Splunk. You'll install and configure an NGINX, then the Splunk forwarder to collect logs in Splunk. The idea is that you can apply everything you've learned within the Bootcamp: creating searches, visualizations, dashboards, etc.

Course Objectives

Join an engaging hands-on learning environment, where youíll learn:

  • Splunk essentials
  • Indexing in Splunk
  • Splunk architecture and components
  • Query and search your data
  • How to create dashboards and visualizations
  • How to apply alerts

This is a hands-on course with engaging instruction, demos, group discussions, labs, and project work.

Course Prerequisites

Before attending this course, you should have:

  • Basic Linux administration and familiarity with using the command line.
  • Basic networking concepts understanding

Course Information

Length: 2 day

Format: Lecture and Lab

Delivery Method: n/a

Max. Capacity: 16



Schedule

Contact Us


Do you have more questions? We're delighted to assist you!

1-877-797-2799
info@firefly.cloud

Who Should Attend

Developers, Data Engineers, Architects, and Administrators