封面
版权页
Credits
About the Author
About the Reviewers
www.PacktPub.com
Support files eBooks discount offers and more
Preface
What this book covers
What you need for this book
Who this book is for
Conventions
Reader feedback
Customer support
Chapter 1. The Application of Splunk
The definition of Splunk
Universal file handling
Confidentiality and security
Conventional use cases
Splunk – outside the box
Splunk in action
Summary
Chapter 2. Advanced Searching
Searching in Splunk
Knowledge management
Subsearching
Searching with parameters
Splunk macros
Search results
Summary
Chapter 3. Mastering Tables Charts and Fields
Tables charts and fields
Splunk bucketing
Drilldowns
Pivot
Split
Column values
Pivot table formatting
A quick example
Sparklines
Summary
Chapter 4. Lookups
Introduction
Configuring a simple field lookup
Command roundup
Summary
Chapter 5. Progressive Dashboards
Creating effective dashboards
Form searching
Going back to dashboards
More on searching
Dynamic drilldowns
Real-world real-time solutions
Summary
Chapter 6. Indexes and Indexing
The importance of indexing
What is a Splunk index?
Indexes indexers and clusters
Managing Splunk indexes
Dealing with multiple indexes
Deleting your indexes and indexed data
Configuring indexes
Moving your index database
Spreading out your Splunk index
Size matters
Hitting the limits
Summary
Chapter 7. Evolving your Apps
Basic applications
BYO or build your own apps
App FAQs
The end-to-end customization of Splunk
Preparation for app development
Summary
Chapter 8. Monitoring and Alerting
What to monitor
Advanced monitoring
Location location location
Leveraging your forwarders
Can I use apps?
Windows inputs in Splunk
Getting started with monitoring
What does Splunk do with the data it monitors?
Splunk
Viewing the Splunk Deployment Monitor app
All about alerts
Editing alerts
Scheduled or real time
Extended functionalities
Summary
Chapter 9. Transactional Splunk
Transactions and transaction types
Transaction search
Advanced use of transactions
Summary
Chapter 10. Splunk – Meet the Enterprise
General concepts
Best practices
Definition of Splunk knowledge
Strategic knowledge management
Splunk object management with knowledge management
Naming conventions for documentation
Testing
Retrofitting
The enterprise vision
Summary
Appendix A. Quick Start
Topics
Where and how to learn Splunk
Certifications
The Splunk documentation
www.splunk.com
Splunk answers
Splunkbase
The support portal
The Splexicon
The "How-to" tutorials
User conferences blogs and news groups
Professional services
Obtaining the Splunk software
An environment to learn in
Summary
Index
更新时间:2021-08-05 16:59:06