1. Overview 1.1 Splunk Enterprise Overview Splunk Enterprise Features a) Index -Source data from websites, applications, servers, databses and more -Index your IT data into Splunk b) Search -Primary way you will navigate youre data in splunk -Search can also be used as report to power dashobard panels c) Alerts -Get notified when search results meet specific conditions -Alert actions can spend an email, post to an RSS feed, or execute a script d) Dashoboards -Combine panels into a wholistic view of your data -Panels can contain search boxes, fields, charts, and more e) Pivot -Map attributes to a table, chart, or data visualization -Can be saved as raports and added to dashboards f) Reports -Save searches as pivot reports and then add reports to dashboards as panels -Run them ad-hoc or on a schedulde Splunk Enterprise Components a) Forwarder -Collects and forwards data to an indexer -Low resource usage allowing them to reside on many machin...
Komentarze
Prześlij komentarz