Book Image

Splunk Best Practices

Book Image

Splunk Best Practices

Overview of this book

This book will give you an edge over others through insights that will help you in day-to-day instances. When you're working with data from various sources in Splunk and performing analysis on this data, it can be a bit tricky. With this book, you will learn the best practices of working with Splunk. You'll learn about tools and techniques that will ease your life with Splunk, and will ultimately save you time. In some cases, it will adjust your thinking of what Splunk is, and what it can and cannot do. To start with, you'll get to know the best practices to get data into Splunk, analyze data, and package apps for distribution. Next, you'll discover the best practices in logging, operations, knowledge management, searching, and reporting. To finish off, we will teach you how to troubleshoot Splunk searches, as well as deployment, testing, and development with Splunk.
Table of Contents (16 chapters)

Summary


In this book, you've been able to learn about some techniques that are moderate and complicated to implement, though all of them can save a Splunk administrator time. Many of these techniques have been used at both small and large companies, as well as enterprise and government facilities from dev-ops to security.

My hope for you is that you glean something that is useful to your day-to-day activities, and leverage it to succeed the way only you know you can. There's a lot of good information within this book, from dashboards, to searching, to advanced data routing, and data model powered panels.

All of these are separate, yet when you pick up these techniques the way you pick up a wrench from a workbench and implement them, you will have many more tools in your belt, to help you look like a rock-star to the next person who asks for the next impossible thing.

There's a lot of assumptions that are made in this book about the skill level of the reader and because of that it may seem like...