0% found this document useful (0 votes)
7 views

Using Fields Course Description

Copyright
© © All Rights Reserved
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
7 views

Using Fields Course Description

Copyright
© © All Rights Reserved
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 1

Using Fields

This three-hour course is for power users who want to learn about
fields and how to use fields in searches. Topics will focus on explaining About Splunk Education
the role of fields in searches, field discovery, using fields in searches,
and the difference between persistent and temporary fields. The last Splunk classes are designed for specific roles such as Splunk
topic will introduce how fields from other data sources can be used to Administrator, Developer, User, Knowledge Manager, or Architect.
enrich search results. Certification Tracks
Our certification tracks provide comprehensive education for
Course Topics Splunk customer and partner personnel according to their areas
▪ What are Fields? of responsibility.
▪ What is Field Discovery? To view all Splunk Education's course offerings, or to register for
▪ Use Fields in Searches a course, go to http://www.splunk.com/education
▪ Compare Temporary versus Persistent Fields
To contact us, email [email protected]
▪ Enrich Data

Prerequisite Knowledge Splunk, Inc.


To be successful, students should have completed the following 270 Brannan St. San Francisco, CA 94107
courses: +1 866.GET.SPLUNK (1 866.438.7758)
▪ Search Under the Hood Contact sales
▪ Multivalue Fields
▪ Creating Knowledge Objects

Course Format
Instructor-led or eLearning

Course Objectives
Topic 1 – What are Fields?
▪ Define fields and field auto-extraction
▪ Explore the Fields sidebar
▪ Add fields to the Selected Fields list
▪ Explore and generate reports from the Fields window

Topic 2 – What is Field Discovery?


▪ Understand Field Discovery
▪ Explore search modes and their effect on search results

Topic 3 – Use Fields in Searches


▪ Use fields correctly in basic searches
▪ Use fields with operators
▪ Use the rename command
▪ Use the fields command to improve search performance

Topic 4 – Compare Temporary versus Persistent Fields


▪ Differentiate between temporary and persistent fields
▪ Create temporary fields with the eval command
▪ Extract temporary fields with the erex and rex commands

Topic 5 – Enrich Data


▪ Understand how fields from lookups, calculated fields, field
aliases, and field extractions enrich data

Splunk Education Services

You might also like