Practical Splunk Search Processing Language: A Guide for Mastering SPL Commands for Maximum Efficiency and Outcome


Practical Splunk Search Processing Language 语言: A Guide for Mastering SPL Commands for Maximum Efficiency and Outcome
by 作者: Karun Subramanian
pages 页数: 289 pages
ISBN-13 书号: 9781484262757
ISBN-10 书号: 1484262751
Publisher Finelybook 出版社: Apress; 1st ed. edition (November 24,2020)
Language 语言: English


Book Description
Use this practical guide to the Splunk operational data intelligence platform to search,visualize,and analyze peta by 作者: te-scale,unstructured machine data. Get to the heart of the platform and use the Search Processing Language (SPL) tool to query the platform to find the answers you need.
With more than 140 commands,SPL gives you the power to ask any question of machine data. However,many users (both newbies and experienced users) find the language difficult to grasp and complex. This book takes you through the basics of SPL using plenty of hands-on examples and emphasizes the most impactful SPL commands (such as eval,stats,and timechart). You will understand the most efficient ways to query Splunk (such as learning the drawbacks of subsearches and join,and why it makes sense to use tstats). You will be introduced to lesser-known commands that can be very useful,such as using the command rex to extract fields and erex to generate regular expressions automatically.
In addition,you will learn how to create basic visualizations (such as charts and tables) and use prescriptive guidance on search optimization. For those ready to take it to the next level,the author introduces advanced commands such as predict,kmeans,and cluster.

What you will learn
Use real-world scenarios (such as analyzing a web access log) to search,group,correlate,and create reports using SPL commands
Enhance your search results using lookups and create new lookup tables using SPL commands
Extract fields from your search results
Compare data from multiple time frames in one chart (such as comparing your current day application performance to the average of the past 30 days)
Analyze the performance of your search using Job Inspector and identify execution costs of various components of your search
This book is for application developers,architects,DevOps engineers,application support engineers,network operations center analysts,security operations center (SOC) analysts,and cyber security professionals who use Splunk to search and analyze their machine data.
​Karun Subramanian is an IT operations expert and a Splunk certified architect. He is committed to helping IT organizations implement world-class observability by 作者: making use of machine-generated data. His IT career has spanned more than two decades,ranging from systems administrator to software engineer to IT director. Possessing deep expertise of the Splunk platform,he has assisted teams to solve complex problems in the area of DevOps,security,and business analytics. He has worked in engineering roles for firms including Wells Fargo Bank,Express Scripts,Federal Reserve Bank,and Optum.

About the Author
​Karun Subramanian is an IT operations expert and a Splunk certified architect. He is committed to helping IT organizations implement world-class observability by 作者: making use of machine-generated data. His IT career has spanned more than two decades,ranging from systems administrator to software engineer to IT director. Possessing deep expertise of the Splunk platform,he has assisted teams to solve complex problems in the area of DevOps,security,and business analytics. He has worked in engineering roles for firms including Wells Fargo Bank,Express Scripts,Federal Reserve Bank,and Optum.

打赏
未经允许不得转载:finelybook » Practical Splunk Search Processing Language: A Guide for Mastering SPL Commands for Maximum Efficiency and Outcome

相关推荐

  • 暂无文章

评论 抢沙发

  • 昵称 (必填)
  • 邮箱 (必填)
  • 网址

觉得文章有用就打赏一下

您的打赏,我们将继续给力更多优质内容

支付宝扫一扫打赏

微信扫一扫打赏