Description
In this course, you will :
- Get ready for the Splunk Enterprise 8.x Certified Administrator exam!
- Learn how to deploy Splunk in various environments and architectures.
- Learn about Splunk licence management.
- Investigate Splunk apps and the vibrant Splunkbase community.
- Understand every aspect of Splunk configuration files.
- Authentication, roles, and users
- Enter the data into Splunk.
- Construct distributed search head clusters.
- Learn how Splunk processes data.
Syllabus :
- Splunk Admin Basics
- License Management
- Splunk Configuration Files
- Splunk Indexes
- Splunk User Management
- Splunk Authentication Management
- Getting Data In
- Distributed Search
- Getting Data In – Staging
- Configuring Forwarders
- Forwarder Management
- Monitor Inputs
- Network and Scripted Inputs
- Agentless Inputs
- Fine Tuning Inputs
- Parsing Phase and Data
- Manipulating Raw Data