Course : Splunk, operational data analysis

Practical course - 3d - 21h00 - Ref. PUK
Price : 2100 € E.T.

Splunk, operational data analysis



Required course

Splunk is a tool that aims to help us collect and sort relevant information: a tool that could be described as [[event correlator]]. This training course will enable you to configure, analyze and generate reports on data based on your personalized alerts.


INTER
IN-HOUSE
CUSTOM

In person or remote class
Available in English on request

Ref. PUK
  3d - 21h00
2100 € E.T.




Splunk is a tool that aims to help us collect and sort relevant information: a tool that could be described as [[event correlator]]. This training course will enable you to configure, analyze and generate reports on data based on your personalized alerts.


Teaching objectives
At the end of the training, the participant will be able to:
Use Splunk to collect, analyze and report on data
Enrich operational data with searches and feeds
Create real-time, scripted and other intelligent alerts
Integrating advanced JavaScript graphics
Using the Splunk API

Intended audience
System and network administrators.

Prerequisites
Basic knowledge of networks and systems.

Course schedule

1
Configuring Splunk

  • Obtain a Splunk.com account.
  • Install Splunk under Windows.
  • Index files and directories via Web interface, CLI or configuration files.
  • Obtain data via network ports, script or modular inputs.
  • Implementation of the Universal Forwarder.
Hands-on work
Configure Splunk. Implement definition of field extractions, event types and labels.

2
Data mining

  • SPL queries. Boolean operators, commands.
  • Search using time ranges.
Hands-on work
Extract from log files, the most frequently visited Web pages, the most frequently used browser, the most frequently visited sites...

3
Dashboards

  • Dashboards and operational intelligence, making data stand out. Types of graphs.
Hands-on work
Create and enhance a dashboard with graphs linked to searches carried out.

4
New application

  • Install an existing Splunk or third-party application.
  • Add dashboards and searches to an application.
  • Interactive dashboards.
  • Produce regular (scheduled) dashboards in PDF format.
Hands-on work
Create a new Splunk application. Install an application and view events related to Cisco switches.

5
Data models

  • Data models.
  • Take advantage of regular expressions.
  • Optimize search performance.
  • Rotate data.
Hands-on work
Use the template pivot command to display data.

6
Data enrichment

  • Group related events, notion of transaction.
  • Take advantage of multiple data sources.
  • Identify relationships between fields.
  • Predict future values.
  • Discover abnormal values.
Hands-on work
Practice in-depth database searches.

7
Alert types

  • Supervised conditions.
  • Action taken in response to alerts.
  • Become proactive with alerts.
Hands-on work
Execute a script when the Web server error 503 occurs, writing the details associated with the event to a file.


Customer reviews
4,3 / 5
Customer reviews are based on end-of-course evaluations. The score is calculated from all evaluations within the past year. Only reviews with a textual comment are displayed.
MARIE EMMANUELLE R.
25/03/26
5 / 5

Contenu très intéressant et allie un très bon équilibre théorie/pratique qui permet de rendre la formation très interactive. Cette parité permet de ne jamais lâcher et continuer à s’intéresser à la formation sans être perdu. Le formateur a une excellente pédagogie. Il explique très bien et prend le temps nécessaire pour répondre aux différentes interrogations de façon à ne perdre personne.De plus, le contenu semble utilisable par la suite.C’est une formation que je recommanderai à 100%
AURELIEN D.
25/03/26
5 / 5

Très bien. Formateur pédagogue, très sympathique et compréhensif.Plusieurs notions du cours ont déjà été vues pour ma part, donc j’aurai apprécié aller davantage en profondeur.
MIKE G.
25/03/26
4 / 5

Formation intéressante, j’ai pu apprendre de nouvelles choses.



Publication date : 01/15/2024


Dates and locations
Select your location or opt for the remote class then choose your date.
Remote class

Last places available
Guaranteed date, in person or remotely
Guaranteed session

REMOTE CLASS
2026 : 1 June, 16 Sep., 2 Dec.

PARIS LA DÉFENSE
2026 : 1 June, 16 Sep., 2 Dec.