image
The Ultimate Drawing Course Beginner to Advanced...
$179
$79
image
User Experience Design Essentials - Adobe XD UI UX...
$179
$79
Total:
$659

Description

Splunk  - Beginner to Architect is a course specifically designed for beginners who intends to master the infrastructure side of Splunk.
This course starts from absolute scratch, and step by step, we build a solid foundation in Splunk to master various aspects related to writing SPL queries, building dashboards, deploying a distributed Splunk architectures, Troubleshooting, Access controls, as well as building highly available clustered setup for Splunk.
We also discuss the traditional and the newer Splunk deployment models, both via the RPM-based approach and the newer Docker containers approach, which provide benefits of deploying Splunk in any platform, including local laptops just within two minutes. This allows quick testing as well as quicker deployments within production environments.
Individuals, post completing this course, will have a solid understanding of Splunk components as well as be able to deploy production level Splunk clusters in their organizations that are highly available and can handle traffic at scale.
With a beginner-friendly course, tons of practicals, easy-to-understand videos, and great Support from our Instructor in case of doubts, this course is all you need to build a solid foundation in Splunk.
With this interesting set of learnings and practicals, I look forward to seeing you in this course.
Who this course is for:
Individuals who are looking to have solid foundation in Splunk.

What you'll learn

Build Highly Available Clustering Architectures

Design and Create Dashboards to detect anomalies

Implementing Splunk in Docker Containers

Troubleshooting and Industry Best Practices in Managing Splunk

Requirements

  • You will need a copy of Adobe XD 2019 or above. A free trial can be downloaded from Adobe.
  • No previous design experience is needed.
  • No previous Adobe XD skills are needed.

Course Content

27 sections • 95 lectures
Expand All Sections
1-Getting Started
3
1.1-Introduction to the Course
1.2-Download Links - Tutorial Data, Samples and Logs
1.3-Our Community
2-Introduction to Splunk & Setting Up Labs
17
2.1-Introduction to Splunk
2.2-Installation Methods for Splunk
2.3-Document - MSSP
2.4-Creating Splunk Account
2.5-Launching Infrastructure for Splunk
2.6-Installing Splunk in Linux
2.7-Document - Splunk Install Commands for Linux
2.8-Installing Splunk in Windows
2.9-Introduction to Docker Containers - New
2.10-Installation Methods for Docker
2.11-Installing Docker in Linux
2.12-Document - Linux Installation Commands
2.13-Installing Docker Desktop
2.14-Document - Docker Desktop
2.15-Deploying Splunk Docker Container
2.16-Document - Deploying Splunk Container Commands
2.17-Notes - Domain 1
3-Getting started with Splunk
15
3.1-Importing Data in Splunk
3.2-Sample Tutorial Logs
3.3-Parsing Authentication Logs
3.4-Security Use-Case - Finding Attack Vectors
3.5-Basics of Search
3.6-Splunk Search Assistant
3.7-Splunk Reports
3.8-Splunk Report - Email Clarification (Followup)
3.9-Understanding Add-Ons and Apps
3.10-Installing Splunk Add-On for AWS
3.11-Overview of Dashboards and Panels
3.12-Building Dashboard Inputs - Time Range Picker
3.13-Building Dashboard Inputs - Text Box
3.14-Building Dashboard Inputs - Drop down
3.15-Notes - Domain 2
4-Splunk Architecture
12
4.1-Directory Structure of Splunk
4.2-Splunk Configuration Directories
4.3-Splunk Configuration Precedence
4.4-Splunk Configuration Precedence - Apps and Locals
4.5-Introduction to Indexes
4.6-Document - Reference Commands
4.7-Bucket Lifecycle
4.8-Warm to Cold Bucket Migration
4.9-Archiving Data to Frozen Path
4.10-Thawing Process
4.11-Splunk Workflow Actions
4.12-Notes - Domain 3
5-Forwarder & User Management
11
5.1-Overview of Universal Forwarders
5.2-Installing Universal Forwarder in Linux
5.3-Installation Manual - Splunk Universal Forwarder
5.4-Challenges in Forwarder Management
5.5-Introduction to Deployment Server
5.6-Document - Enable Deployment Server
5.7-ServerClass and Deployment Apps
5.8-Document - Connecting to Deployment Server
5.9-Pushing Custom Add-On via Deployment Server
5.10-Document - Commands
5.11-Notes - Domain 4
6-Post Installation Activities
14
6.1-Understanding Regular Expressions
6.2-Regex - Exercise
6.3-Parsing Web Server Logs & Named Group Expression
6.4-Sample - Web Server Logs
6.5-Importance of Source Types
6.6-Interactive Field Extractor (IFX)
6.7-props.conf and transforms.conf
6.8-Sample Log - MySQL Error Logs
6.9-Splunk Event Types
6.10-Tags
6.11-Splunk Events Types Priority and Coloring Scheme
6.12-Splunk Lookups
6.13-Splunk Alerts
6.14-Notes - Domain 5
7-Security Primer
3
7.1-Access Control
7.2-Creating Custom Roles & Capabilities
7.3-Notes - Domain 6
8-Distributed Splunk Architecture
9
8.1-Overview of Distributed Splunk Architecture
8.2-Understanding License Master
8.3-Implementing License Master
8.4-License Pools
8.5-Indexer
8.6-Masking Sensitive Data at Index Time
8.7-Search Head
8.8-Splunk Monitoring Console
8.9-Notes - Domain 7
9-Indexer Clustering
14
9.1-Our Community
9.2-Overview of Indexer Clustering
9.3-Infrastructure for Indexer Cluster
9.4-Configuring Master Indexer
9.5-Configuring Peer Indexers
9.6-Testing Replication Capabilities
9.7-Testing Failover Capabilities
9.8-Configuration Bundles of Master Indexers
9.9-Document - indexes.conf
9.10-Forwarding Logs to Indexer Cluster
9.11-Document - Referenced Commands
9.12-Implementing Indexer Discovery
9.13-Indexer Discovery - Document
9.14-Notes - Domain 8
10-Search Head Clustering
10
10.1-Overview of Search Head Clustering
10.2-Infrastructure for Search Head Cluster
10.3-Setting Up Search Head Clustering
10.4-Document - Search Head Cluster Setup
10.5-Validating Search Head Replication
10.6-Pushing Artifacts through Deployer
10.7-Document - Pushing Bundle Setup
10.8-Integration - Search Head Cluster to Indexer Cluster
10.9-SH to IDX Cluster Document
10.10-Notes - Domain 9
11-Advanced Splunk Concepts
5
11.1-Using Btool for Troublshooting
11.2-Overview of Data Models
11.3-Creating Data Model - Practical
11.4-Splunk Support Programs
11.5-Notes - Domain 10