Splunk Enterprise Deployment Practical Lab
Upcoming Classes
Online
Instructor-led online training
Location | Feb 2023 | Mar 2023 | Apr 2023 | May 2023 | Jun 2023 | Jul 2023 | Aug 2023 |
---|---|---|---|---|---|---|---|
AMER Eastern Time - Virtual |
Feb 15 Feb 21 |
Mar 7 Mar 15 Mar 21 Mar 29 |
Apr 3 Apr 12 Apr 17 Apr 26 | ||||
AMER Pacific Time - Virtual |
Feb 22 |
Mar 6 Mar 20 |
Apr 4 Apr 18 | ||||
EMEA UK Time - Virtual |
Feb 27 |
Mar 29 |
Apr 11 Apr 27 | ||||
APAC Singapore - Virtual |
Mar 6 Mar 7 |
Apr 3 Apr 4 |

Summary
This 24-hour practical lab exercise is designed to take you through the tasks of a complete mock deployment. Each participant is given access to a specified number of Linux servers and a set of requirements. Participants then perform a mock deployment according to requirements which adhere to Splunk Deployment Methodology and best-practices.
Objectives
Installation and Infrastructure
- Install forwarders, indexers, search head, deployment server and license master
Configuration and Collection
- Configure an index cluster
- Deploy all specified configurations via deployment server
- Configure inputs from forwarders
- Configure and confirm index-time knowledge
- Create search time field extractions
Searching and Reporting
- Create searches for each required use case
Prerequisites
To be successful, students should have a solid understanding of the following courses:
- Splunk Fundamentals 1
- Splunk Fundamentals 2
- What Is Splunk?
- Intro to Splunk
- Using Fields
- Scheduling Reports and Alerts
- Visualizations
- Introduction to Knowledge Objects
- Creating Field Extractions
- Introduction to Dashboards
- Splunk Enteprise System Administration
- Splunk Enterprise Data Administration
- Architechting Splunk Enterprise Deployments
- Troubleshooting Splunk Enterprise
- Splunk Enterprise Cluster Administration