Transitioning to Splunk Cloud 8.0.2
Upcoming Classes
Online
Instructor-led online training
Location | Jan 2021 | Feb 2021 | Mar 2021 | Apr 2021 | May 2021 | Jun 2021 | Jul 2021 |
---|---|---|---|---|---|---|---|
AMER Eastern Time - Virtual |
Feb 1 – Feb 2 Feb 8 – Feb 9 Feb 22 – Feb 23 |
Mar 1 – Mar 2 Mar 15 – Mar 16 Mar 22 – Mar 23 |
Apr 5 – Apr 6 Apr 12 – Apr 13 Apr 26 – Apr 27 | ||||
EMEA UK Time - Virtual |
Feb 1 – Feb 2 Feb 22 – Feb 23 |
Mar 15 – Mar 16 |
Apr 6 – Apr 7 Apr 19 – Apr 20 | ||||
AMER Pacific Time - Virtual |
Feb 18 – Feb 19 |
Mar 8 – Mar 9 Mar 29 – Mar 30 |
Apr 19 – Apr 20 |
Summary
This 2-virtual day course highlights key differences between Splunk Enterprise deployed on-premise and Splunk Enterprise Cloud to allow Splunk Administrators to transition to Splunk Cloud.
The course provides the skills and knowledge for Splunk Cloud administrators to collect and ingest data as well as manage their cloud environment and maintain a productive Splunk SaaS deployment.
Description
- Splunk Cloud SaaS
- User Authentication and Authorization
- Index Management and Data Retention
- Cloud Ingestion - Using Splunk Forwarders
- Cloud Ingestion - Use API, HEC and Scripted Inputs
- Cloud Ingestion - Using Apps and IDM Inputs
- Installing and Managing Apps
- Refine and Manipulate Inputs
- Working with Cloud Support
Objectives
Module 1 – Splunk Cloud SaaS
- Describe Cloud SaaS benefits and features
- Identify Splunk Cloud administrator and managed tasks
- Explain the differences between Splunk Enterprise on premise and Splunk Enterprise Cloud
Module 2 – User Authentication and Authorization
- Identify Splunk Cloud authentication options
- Add Splunk users using native authentication
- Integrate Splunk with LDAP, Active Directory or SAML
- Understanding Splunk authorization options
Module 3 – Index Management and Data Retention
- Understand cloud indexing strategy
- Create indexes in cloud
- Manage data retention and archiving
- Monitor indexing activities
Module 4 – Cloud Ingestion - Using forwarders
- Review cloud ingestion strategies
- Understand the role of forwarders in GDI
- Configure forwarding to Splunk Cloud
- Monitoring forwarder connectivity
- Explore optional forwarder settings
Module 5 – Cloud Ingestion - Using API, HEC and Scripted Inputs
- Understand how data is ingested using API
- Describe how to use HEC for ingestion
- Know how to deploy scripted inputs
Module 6 – Cloud Ingestion - Using Apps and IDM Inputs
- Understand how inputs are managed using in apps or add-ons
- Describe how customers may use Splunk Stream app
- Deploy Cloud inputs for use on an IDM
Module 7 – Installing and Managing Apps
- Understand how apps and add-ons are vetted and installed in Cloud
- Create apps to manage and distribute configurations
Module 8 – Refine and Manipulate Inputs
- Create and define props and transforms using the UI
- Understand how to create, modify and deploy configs in Cloud
- Masking data and removing data prior to ingestion
- Dirty data and performance gains
Module 9 – Cloud Support and Troubleshooting
- Troubleshooting Splunk deployments
- Collecting data and use diagnostics or monitoring to investigate
- Explore diagnostic tools used to troubleshoot common issues
- Overview of how to submit request with the relevant data for support to troubleshoot