- eBook:Splunk Certified Study Guide: Prepare for the User, Power User, and Enterprise Admin Certifications
- Author:Deep Mehta
- Edition:1 edition
- Data:March 29, 2021
- Pages:455 pages
- Format:PDF, ePUB
In the second part, you will explore the Splunk Admin certification. There will be in-depth coverage of Splunk licenses and user role management, and how to configure Splunk forwarders, indexer clustering, and the security policy of Splunk. You’ll also explore advanced data input options in Splunk as well as .conf file merging logic, btool, various attributes, stanza types, editing advanced data inputs through the .conf file, and various other types of .conf file in Splunk.
The concluding part covers the advanced topics of the Splunk Admin certification. You will also learn to troubleshoot Splunk and to manage existing Splunk infrastructure. You will understand how to configure search head, multi-site indexer clustering, and search peers besides exploring how to troubleshoot Splunk Enterprise using the monitoring console and matrix.log. This part will also include search issues and configuration issues. You will learn to deploy an app through a deployment server on your client’s instance, create a server class, and carry out load balancing, socks proxy, and indexer discovery.
By the end of the Splunk Certified Study Guide, you will have learned how to manage resources in Splunk and how to use REST API services for Splunk. This section also explains how to set up Splunk Enterprise on the AWS platform and some of the best practices to make them work efficiently together.
The book offers multiple choice question tests for each part that will help you better prepare for the exam.
What You Will Learn
- Study to pass the Splunk User, Power User, and Admin certificate exams
- Implement and manage Splunk multi-site clustering
- Design, implement, and manage a complex Splunk Enterprise solution
- Master the roles of Splunk Admin and troubleshooting
- Configure Splunk using AWS
People looking to pass the User, Power User, and Enterprise Admin exams. It is also useful for Splunk administrators and support engineers for managing an existing deployment.
Chapter 1: An Overview of Splunk
Chapter 2: Splunk Search Processing Language
Chapter 3: Macros, Field Extraction, and Field Aliases
Chapter 4: Tags, Lookups, and Correlating Events
Chapter 5: Data Models, Pivot, and CIM
Chapter 6: Knowledge Managers and Dashboards in Splunk
Chapter 7: Splunk User/Power User Exam Set
Part II: Splunk Data Administration and System Administration
Chapter 8: Splunk Licenses, Indexes, and Role Management
Chapter 9: Machine Data Using Splunk Forwarder and Clustering
Chapter 10: Advanced Data Input in Splunk
Chapter 11: Splunk’s Advanced .conf File and Diag
Chapter 12: Splunk Admin Exam Set
Part III: Advanced Splunk
Chapter 13: Infrastructure Planning with Indexer and Search Head Clustering
Chapter 14: Troubleshooting in Splunk
Chapter 15: Advanced Deployment in Splunk
Chapter 16: Advanced Splunk
Chapter 17: Final Practice Set
Chapter 18: Setting up a Splunk Environment with AWS