Hadoop Splunk Advanced 02 - Administration

Splunk Advanced 02 - Administration

Catalog: Hadoop
Short name: SAA - 2023
Course start date: 2024-07-02
Paystack

Description

Through these tutorials you will be able to learn about Splunk enterprise environment and resource management in depth.

Course Duration:- 37h 54m

Sections

General
0 activities

Introduction to Splunk Component
Search Head and Forwarder Components in Splunk
Deployment Server and License Master
Hardware Requirement for Splunk
Hardware Requirement for Splunk Continues
Splunk Directory Structure
More on Splunk Directory Structure
Splunk Configuration File
Props Configuration and Transom Configuration
Splunk Access Controls Overview
Example of Splunk Access Control
Splunk Distributed Environment
Search Peer Example in Splunk
Single Instance Deployment in Splunks
Multi Instance Deployment in Splunks
OS Permissions in Splunk
Splunk D Process and Splunk Port
Splunk Pipeline and Its Segments
Splunk Licensing
More onSplunk Licensing
License and Warning in Splunks
License and Warning in Splunks Continues
Splunk Indexes
Default Indexes in Splunks
Default Indexes in Splunks Continues
Web Data Index In Splunk
Security index in Splunk
Security index in Splunk Continues
Splunk Index Buckets
Hot Splunk Index Buckets
Warm Splunk Index Buckets
Splunk Configuration Files
Splunk Configuration Files Example
Splunk Configuration Directories
Flowchart of Configuration Directories
Flowchart of Configuration Directories Continues
Splunk Index time
Splunk Search time
No Conflicts Splunk Config File Merge
No Conflicts Splunk Config File Merge Flowchart
Splunk Config File Merge Conflicts
Splunk Config File Merge Conflicts Continues
Example of Merge Conflicts
Splunk Btool Command
Splunk of Btool Command Example
Configuration Changes in Btool Command
Splunk Index Management
Types of Index Management in Splunk
Types of Index Management in Splunk Continues
Creation of Splunk Indexes
More on Splunk Indexes
Splunk Index Size Estimates
Splunk Index Size Estimates Continues
Splunk Index Integrity Check
How to Configure a Splunk File
More on Splunk Configure File
Additional Settings in Splunk Configure File
Additional Settings in Splunk Configure File Continues
Example in Splunk Configure File
Splunk Retention Policy
Types of Splunk Retention Policy
Strict Volume Base Retention Policy
Example of Strict Volume Base Retention
Monitoring Indexing Activities in Splunk
Splunk Data Pipeline in Indexing Activities
Types of Charts in Indexes
Volume Instance in Monitoring Indexing Activities
More on Volume Instance
Working with Backups in Splunk
Examples of Backup In Splunk
Removing indexed data in Splunk
How To Remove Indexed Data
How To Remove Indexed Data Continues
Restoring Forzen Bucket
Index Replication
Splunk Access Controls
Splunk Access Controls Continues
Splunk Default Roles
Creation of Splunk Roles
Example of Splunk Roles
Splunk Access Controlsof Default Indexes
Splunk Access Controls on Indexes
Splunk Access Controls on Indexes Continues
Splunk Role Inheritance
Methods of Role Inheritance
Splunk Role Capabilities
More on Roles Capabilites
Splunk Users Role
Splunk Native Authentication Access Control
Splunk Admin Access Control
Working with LDAP Authentication Option
Flowchart of LDAP Authentication
Flowchart of LDAP Authentication Continues
How to Configure a LDAP Server
Exampler of LDAP Server
Working sample in using LDAP SERVER
How to Configure a SAMPLE Server
How to Configure a SAMPLE Server continues
Single Sign out with Reverse Proxy
Splunk Scripted Authentication
Splunk Universal Forwarders
Installation of Universal Forwarder
Downloading Universal Forwarder
Validating Forwarder Installation
Checking Management Port
Splunk Status Command
Configuration of Splunk Universal
Configuring Listening Port
Indexer File
Testing the Connection
Troubleshoot the Connection
Securing The Data Feed
Automatic Load Balancing
Automatic Load Balancing Continues
Queue Size and Indexer Acknowledgement
Navigation in Indexer File
Indexer Acknowledgement
Recap on Advanced Forwarder
Configuration of Forwarder Inputs
Forwarding Monitoring and Management
Forwarder Asset Table
Splunk Forwarder Management
Compressing Data Feed
Connection through Data Manager
Components of Deployment Server
Creating Folder in Linux
Overview on Deployment Server
Forwarder Management
Creating Deployment App
Configuring Deployment App
Overview on the Process
Defining User Class
Configuring as Deployment Client
Splunk Deployment Server
Getting Data Into Splunk
Parsing Phase
Indexing Phase
Different Configuration Setting
Metadata Fields Source
Difference Between Parsing and Indexing
Functions of Parsing and Indexing
Splunk Index Time Process
Understanding the Monitor
Selecting the Checkpoints
Setting Source Type
Describing Host Field
Forward Option
Monitoring Console
Monitor Inputs
Multi Line Log Files
Input Settings
Monitoring Inputs
Settings with Host Field
Monitoring Directory
Files and Directories
Monitor Line for Source File
Segments of Wildcards
Dot Log Files
Advanced Options for Input File
Blacklist Precedence
Input Configuration
Overriding the Host Field
Inputing New Data
Configuring the Data Forwarding
Data Feed Advantages and Disadvatages
Forwarder and Receiving Indexer
Difference in queue
Persistent Queue
Scripted Inputs
Creating a Script
Processing on Scripting Inputs
Scheduling per Requirement
Data Inputs
Configuring Scripted Inputs
Script in Directories
Windows Inputs and Agentless Inputs
Windows Specific Inputs
Types of Windows Specific Inputs
Settings for App Context
Local Performance Monitor
Settings in Input Files
Event Log Monitoring
Powershell Inputs
Splunk Agentless Inputs
HTTP event collector
Specifying Metadata
Fine Tuning Inputs
Props Dot Conf
Data Modifications in Props
Creating Monitor Input
Parsing Phase and Data Preview
Event Boundaries
Single Line Source Type
Setting time zone
Multi Line Events
Date and Time Stamp
Date and Time Stamp Continues
Data Preview Screen
Time Stamp Field
Method of Classification
Manipulating Raw Data
Using the Regex
Event Based Transformation
Log File for Regex
Understanding Regex
Indexing the Log File
Setting up Host name
KV Based lookups
Types of Lookups
Mitigating Possible Data Access Risks
The Available Capabilities in Splunk
Restricting Unauthorized Users in Splunk
Learning about the Distributed Search
Understanding the Distributed Architecture
Standalone and Distributed Architecture
Setting up Distrubuted Search
Differences in Clustered and Non Clustered Index
Distributed Search Authentication
Best Practices using Distributed Search
Understanding the Dedicated Search Heads
Determining the Search Head Cluster
Performance Tuning in Splunk
Splunk Data Pipelines
Setting the Index Parallization
Index Storage Optimization
Index Storage Optimization Continues
Concept of Search Performance
Reports Designed in Splunk
Schedule Window in Search Performance
Managing the Search Jobs
Runtime to Search the Query
Evaluating on the Saved Option
Using the Search Parallelization
Learning the Real Time Search
Learning the Real Time Search Continues
Log Levels in Splunk
Types of Splunk Log Levels
Modifying the Splunk Level
Functions of Indexing Processes
Running the Splunk Diag Command
More on Splunk Diag
Large Scale Splunk Deployment
Large Scale Splunk Deployment Continues
Course Certificate

File
243
Certificate
1
Cost: 5000

Tag

Course Duration:- 37h 54m