HemSök efter kurserDynamic Dashboards

Dynamic Dashboards

This three-hour module is designed for power users who want to learn best practices for building dashboards in the Dashboard Studio. It focuses on creating inputs, chain searches, event annotations, and improving dashboard performance.

Utbildningsformer
Remote

Längd
dagar

Pris
5075 kr

Search Experts Knowledge Managers

  • Data Source Types
  • Mock Data
  • Event Annotations
  • Adding Inputs
  • Chain Searches

To be successful, students should have a solid understanding of the following:

  • How Splunk works
  • Creating Search queries
  • Knowledge Objects
  • The dashboard definition

Topic 1 - Selecting a Data Source

  • Identify dataSources stanza fields
  • Name search types
  • Use a secondary data source

Topic 2 - Adding Inputs

  • Identify types of inputs
  • Describe how inputs work
  • Create a dynamic input
  • Add cascading inputs
  • Topic 3 - Improving Performance

    • Identify performance improvement methods
    • Use tstats and accelerated data models
    • Create chain searches
    • Set defaults
    • Topic 4 - Comparing Temporary versus Persistent Fields

      • Differentiate between temporary and persistent fields
      • Create temporary fields with the eval command
      • Extract temporary fields with the erex and rex commands
      • Topic 5 - Enriching Data

        • Understand how fields from lookups, calculated fields, field aliases, and field extractions enrich data
        • Utbildningen levereras i samarbete med: Arrow