Goal: Learn the various Splunk Data onboarding techniques and query that data with basic and advanced Splunk commands. Use different keywords to search and filter the Indexed data based on the requirements.
Objective: Upon completing this module, you should be able to:
• Perform Data onboarding to Splunk
• Query using basic and advanced Splunk commands
• Use different keywords to search and filter indexed data based on any individual team requirement
Topics:
• Learn the various data onboarding techniques: -
• Via flat files
• Via UF (Universal Forwarder)
• Implement Basic search commands in Splunk: -
Fields, Table, Sort, Rename, Search
• Understand the use of time ranges while searching
• Learn Reporting & Transforming commands in
Splunk: - Top, Rare, Stats, Chart, Timechart, Dedup, Rex
Hands-On:
• Data onboarding via Universal forwarder and flat files
• Basic and advanced Splunk search commands
• Understand the use of time ranges while searching