|
所在平台: Coursera |
课程主页: https://www.coursera.org/learn/splunk-search-expert-102
课程评论:没有评论
课程名称:Splunk搜索专家102 概述:踏上Splunk知识的下一步。在本课程中,您将学习如何根据不同场景更好地使用时间,掌握处理、操纵和关联数据的命令。 课程大纲: 1. **时间的使用** 描述:本模块旨在帮助用户成为搜索中使用时间的专家。主题将集中在搜索和格式化时间,以及使用时间命令和处理时区方面。 2. **统计处理** 描述:本模块适合希望识别并使用转换命令和评估函数以计算数据统计的用户。主题将涵盖数据系列类型、主要转换命令、数学和统计评估函数、将eval用作函数,以及重命名和排序命令的使用。 3. **值的比较** 描述:本模块为期三小时,适合希望通过eval函数和评估表达式比较字段值的高级用户。主题将集中在使用eval命令的比较和条件函数,以及如何使用eval表达式与fieldformat和where命令配合。 4. **结果修改** 描述:本模块适合希望使用命令来操纵输出并标准化数据的用户。主题将集中在特定命令上以操纵字段和字段值、修改结果集及管理缺失数据。此外,学生还将学习如何使用特定的eval命令函数在多个数据源之间标准化字段和字段值。 5. **利用查找和子搜索** 描述:本模块旨在帮助用户学习如何使用查找和子搜索来丰富结果。主题将集中在查找命令,并探讨如何使用子搜索来关联和过滤来自多个源的数据。 此课程适合希望深入掌握Splunk的用户,帮助他们提升数据分析和搜索能力。
Name:Working with Time
Description:This module is for users who want to become experts at using time in searches. Topics will focus on searching and formatting time in addition to using time commands and working with time zones.
Name:Statistical Processing
Description:This module is for users who want to identify and use transforming commands and eval functions to calculate statistics on their data. Topics will cover data series types, primary transforming commands, mathematical and statistical eval functions, using eval as a function, and the rename and sort commands.
Name:Comparing Values
Description:This three-hour course is for power users who want to learn how to compare field values using eval functions and eval expressions. Topics will focus on using the comparison and conditional functions of the eval command, and using eval expressions with the fieldformat and where commands.
Name:Result Modification
Description:This module is for users who want to use commands to manipulate output and normalize data. Topics will focus on specific commands for manipulating fields and field values, modifying result sets, and managing missing data. Additionally, students will learn how to use specific eval command functions to normalize fields and field values across multiple data sources.
Name:Leveraging Lookups & Subsearches
Description:This module is designed for users who want to learn how to use lookups and subsearches to enrich their results. Topics will focus on lookup commands and explore how to use subsearches to correlate and filter data from multiple sources.
Take the next step in your knowledge of Splunk. In this course, you will learn how to use time differently based on scenarios, learn commands to help process, manipulate and correlate data.