Table of Contents
Part 1: Splunk Architecture , Splunk SPL(Search Processing Language) and Splunk Knowledge Objects
Goal: In this module, readers will be given a detailed idea about current splunk architecture.They will learn how to fire splunk queries using splunk SPL(Search Processing Language) and will look into all the modules provided by splunk to analyze data and will cover all modules necessary to pass power user exam which covers splunk knowledge objects in detail.This module is basic module where we create base for candidate to pass splunk admin exam.
Chapter 1: Overview Of Splunk
Chapter 2: Splunk Search Processing Language
Chapter 3: Macros,Field Extraction and Field Aliases
Chapter 4: Tags,Lookups and Correlating Events
Chapter 5: Datamodels,Pivot and CIM in Splunk
Chapter 6: Knowledge Manager and Dashboard in Splunk
Chapter 7: Splunk User/Power User Exam set
Part 2: Splunk Data Administration and System Administration
Goal: In this module data & system administration are designed in a way that will focus on very important topics that will help candidates to pass splunk admin exam.We will study the roles of a splunk admin. In this module, we will understand the concepts behind splunk Licenses and role management, configuring splunk forwarders, clustering in splunk, getting advanced data input and updating .conf file.
Chapter 8: Splunk Licenses, Indexes and role Management
Chapter 9: Machine Data using Splunk forwarder and clustering
Chapter 10: Splunk Advanced Data Inputs
Chapter 11: Splunk Advanced .Conf file and Diag
Chapter12: Splunk Admin Exam set
Part 3: Advanced Splunk
Goal: In this part we will explore some features that are very useful for splunk admins in day to day life like infrastructure planning with search head clustering , troubleshooting in splunk,Advanced Deployment, Roles of splunk architect and splunk best practices . By the end of this module, readers will gain a more advanced insight of splunk.
Chapter 13: Infrastructure planning with Indexer and Search Head Clustering
Chapter 14: Troubleshooting in Splunk
Chapter 15: Advanced Deployment in Splunk
Chapter 16: Advanced Splunk
Chapter 17: Final Practice set
Chapter 18: Setting up a Splunk Environment with AWS