The Splunk Core user study companion : achieve Splunk enterprise certified admin and gain architect essentials /

Splunk is a software technology for monitoring, searching, analyzing, and visualizing machine-generated data in real time. This book, divided into three modules, is structured to help readers prepare for Splunk certification exams. The first module focuses on the Splunk Core Certified User and Power...

Full description

Bibliographic Details
Main Authors: Buitrago, Carlos Moreno (Author), Mehta, Deep (Author)
Format: eBook
Language:English
Published: [Berkeley, CA] : Apress, [2026]
Edition:Second edition.
Series:Certification study companion series.
Subjects:
Table of Contents:
  • Part 1: Splunk Architecture, Splunk SPL (Search Processing Language) and Splunk Knowledge Objects
  • Chapter 1: Overview Of Splunk
  • Chapter 2: Splunk Search Processing Language
  • Chapter 3: Macros, Field Extraction and Field Aliases
  • Chapter 4: Tags, Lookups and Correlating Events
  • Chapter 5: Data Models, Pivot and CIM
  • Chapter 6: Knowledge Managers and Dashboards in Splunk
  • Chapter 7: Splunk User/Power User Exam Set
  • Part 2: Splunk Data Administration and System Administration
  • Chapter 8: Splunk Licenses, Indexes and Role Management
  • Chapter 9: Machine Data Using Splunk Forwarder and Clustering
  • Chapter 10: Advanced Data Input in Splunk
  • Chapter 11: Splunk's Advanced .conf file and Diag
  • Chapter 12: Splunk Admin Exam Set
  • Part 3: Advanced Splunk
  • Chapter 13: Infrastructure Planning with Indexer and Search Head Clustering
  • Chapter 14: Troubleshooting in Splunk
  • Chapter 15: Advanced Deployment in Splunk
  • Chapter 16: Advanced Splunk
  • Chapter 17: Final Practice Set
  • Chapter 18: Setting up a Splunk Environment with AWS.