|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/splk-1001-splunk-core-certified-user-study-guide/
课程评论:没有评论
**课程名称:** SPLK-1001:Splunk 核心认证用户学习指南 **课程概述:** 本课程是 SPLK-1001 Splunk 核心认证用户考试的官方学习指南。课程旨在为学员提供扎实的 Splunk 基础知识,涵盖 Splunk 的核心组件、基本搜索技巧、字段的使用、核心搜索命令、报表、仪表盘、查找以及警报的创建和使用。通过详细的解释和带有答案解析的练习题,学员可以深入理解考试目标,提升技能或巩固现有知识,为通过 Splunk 核心认证用户考试做好充分准备。本课程的练习题侧重于理解和运用,而非时间限制,旨在为服务器管理员提供管理各种服务器环境所需的必要知识。 **主要学习目标:** 1. **Splunk 基础:** 了解 Splunk 组件、用途、应用(apps)概念,自定义用户设置,以及 Splunk 的基本导航。 2. **基本搜索:** 学习运行基本搜索,设置时间范围,理解搜索结果内容,优化搜索,使用时间线,处理事件,控制搜索作业以及保存搜索结果。 3. **字段的使用:** 理解字段概念,如何在搜索中使用字段,以及利用字段侧边栏。 4. **搜索语言基础:** 回顾基础搜索命令和通用搜索实践,了解搜索管道,指定索引,以及使用 `table`、`rename`、`fields`、`dedup` 和 `sort` 等命令。 5. **基本转换命令:** 掌握 `top`、`rare` 和 `stats` 命令的使用。 6. **创建报表和仪表盘:** 学习将搜索保存为报表,编辑报表,创建展示统计信息(表格)和可视化图表(charts)的报表,创建仪表盘,并将报表添加到仪表盘,以及编辑仪表盘。 7. **创建和使用查找(Lookups):** 描述查找的概念,分析查找文件示例,创建查找文件和查找定义,配置自动查找,并在搜索中使用查找。 8. **创建计划报表和警报:** 描述计划报表,配置计划报表,描述警报,创建警报,以及查看已触发的警报。 完成本课程的学习后,学员将对 Splunk 有更深入的理解,并为通过 SPLK-1001 Splunk 核心认证用户考试打下坚实基础。
The SPLK-1001: Splunk Core Certified User Study Guide contains the official objectives that will provide proper knowledge to the candidates with the goal to upgrade their skills or simply to confirm what they already know. The main objectives are covering Splunk basics and searching, how to use fields in searches, using basic transforming commands as well as covering reports, dashboards, lookups and alerts.This study guide includes explanations for both correct and incorrect answers, providing future candidates to learn and understand the concepts and methodologies that are appended to the SPLK-1001: Splunk Core Certified User exam objectives while going through the practice tests.Each of the practice exams grants the learner with enough time in order to respond to all questions. The idea is to provide candidates with extended time to learn and confirm their skills while preparing for the certification.The intent here is not a "run against the clock" training exam. It is focused on providing the proper knowledge in regards to server administrators managing simple or complex server environments.The following objectives are covered:1.0 Splunk Basics1.1 Splunk components1.2 Understand the uses of Splunk1.3 Define Splunk apps1.4 Customizing user settings1.5 Basic navigation in Splunk2.0 Basic Searching2.1 Run basic searches2.2 Set the time range of a search2.3 Identify the contents of search results2.4 Refine searches2.5 Use the timeline2.6 Work with events2.7 Control a search job2.8 Save search results3.0 Using Fields in Searches3.1 Understand fields3.2 Use fields in searches3.3 Use the fields sidebar4.0 Search Language Fundamentals4.1 Review basic search commands and general search practices4.2 Examine the search pipeline4.3 Specify indexes in searches4.4 Use the following commands to perform searches: tables, rename, fields, dedup, and sort5.0 Using Basic Transforming Commands5.1 The top command5.2 The rare command5.3 The stats command6.0 Creating Reports and Dashboards6.1 Save a search as a report6.2 Edit reports6.3 Create reports that display statistics (tables)6.4 Create reports that display visualizations (charts)6.5 Create a dashboard6.6 Add a report to a dashboard6.7 Edit a dashboard7.0 Creating and Using Lookups7.1 Describe lookups7.2 Examine a lookup file example7.3 Create a lookup file and create a lookup definition7.4 Configure an automatic lookup7.5 Use the lookup in searches8.0 Creating Scheduled Reports and Alerts8.1 Describe scheduled reports8.2 Configure scheduled reports8.3 Describe alerts8.4 Create alerts8.5 View fired alertsAt the end of this study guide, candidates will be better prepared for the official SPLK-1001: Splunk Core Certified User certification exam.