Splunk Fundamentals 2 Course Overview

Splunk Fundamentals 2 training course focuses on searching and reporting commands as well as on the creation of knowledge objects, using transforming commands and visualizations, filtering and formatting results, correlating events, creating knowledge objects, using field aliases and calculated fields, creating tags and event types, using macros, creating workflow actions and data models, and normalizing data with the Common Interface Model (CIM).

Course Topics

  • Transforming commands and visualization
  • Filtering and formatting
  • Results
  • Correlating events
  • Knowledge objects
  • Fields (Field aliases, field extractions, calculated fields)
  • Tags and event types
  • Macros
  • Workflow actions
  • Data models
  • Splunk Common Information Model (CIM)
  • 1. Do you have limited Window for training?
  • 2. Can you only spend 4-hours per day?
  • 3. Do you want to start training immediately?
  • If your answer is yes to any one of the above, you need 1-on-1- Training
The 1-on-1 Advantage
Methodology
Flexible Dates
4-Hour Sessions
  • View video
  • The course will be free if we are not able to start within 7 days of booking.
  • Only applicable for courses on which this logo appears.

Your will learn:

odule 1 – Introduction
  • Overview of Buttercup Games Inc.
  • Lab environment
  • Search fundamentals review
  • Case sensitivity
  • Using the job inspector to view search performance
  • Explore data structure requirements
  • Explore visualization types
  • Create and format charts and timecharts
  • The iplocation command
  • The geostats command
  • The geom command
  • The geom command
  • The eval command
  • Using the search and where commands to filter results
  • The filnull command
  • Identify transactions
  • Group events using fields
  • Group events using fields and time
  • Search with transactions
  • Report on transactions
  • Determine when to use transactions vs. stats
  • Identify naming conventions
  • Review permissions
  • Manage knowledge objects
  • Perform regex field extractions using the Field Extractor (FX)
  • Perform delimiter field extractions using the FX
  • Describe, create, and use field aliases
  • Describe, create and use calculated fields
  • Create and use tags
  • Describe event types and their uses
  • Create an event type
  • Describe macros
  • Create and use a basic macro
  • Define arguments and variables for a macro
  • Add and use arguments with a macro
  • Describe the function of GET, POST, and Search workflow actions
  • Create a GET workflow action
  • Create a POST workflow action
  • Create a Search workflow action
  • Describe the relationship between data models and pivot
  • Identify data model attributes
  • Create a data model
  • Create a data model
  • Describe the Splunk CIM
  • List the knowledge objects included with the Splunk CIM Add-On
  • Use the CIM Add-On to normalize data
Live Online Training (Duration : 24 Hours)
Group Training 1650 Per Participant
06 - 08 Jun 09:00 AM - 05:00 PM CST
(8 Hours/Day)
04 - 06 Jul 09:00 AM - 05:00 PM CST
(8 Hours/Day)
1-on-1 Training 3300 1850 + If you accept merging of other students.
4 Hours
8 Hours
Week Days
Weekend

Start Time : At any time

12 AM
12 PM

1-On-1 Training is Guaranteed to Run (GTR)
Classroom Training (Available: London, Dubai, India, Sydney, Vancouver)
Duration : On Request
Fee : On Request
On Request
Classroom Training is available. Enquire for the fee Click
Ultra-Fast Track

If you can't spare 24 hours. We can offer you an Ultra-Fast Track for 12 hours for only USD 1,480

Course Prerequisites
  • Splunk Fundamentals 1
  • Module 1 – Introduction
  • Module 2 - Beyond Search Fundamentals
  • Module 3 - Using Transforming Commands for Visualizations
  • Module 4 - Using Mapping and Single Value Commands
  • Module 5 - Filtering and Formatting Results
  • Module 6 - Correlating Events
  • Module 7 - Introduction to Knowledge Objects
  • Module 8 - Creating and Managing Fields
  • Module 9 - Creating Field Aliases and Calculated Fields
  • Module 10 - Creating Tags and Event Types
  • Module 11 - Creating and Using Macros
  • Module 12 - Creating and Using Workflow Actions
  • Module 13 - Creating Data Models
  • Module 14 - Using the Common Information Model (CIM) Add-On

Request More Information

Add Name and Email Address of participant (If different from you)

FAQ's


Yes, fee excludes local taxes.
The Fee includes:
  • Courseware
  • Testing Via Qubits
  • Remote Labs
Yes, Koenig Solutions is a Splunk Learning Partner