Description
Course info
Level
Intermediate
Updated
Jun 23, 2020
Duration
2h 20m
Description

The most common method of data ingestion in Splunk is using the universal forwarders. While most of the factory settings work well on a universal forwarder, there are numerous options you can (and should) configure for optimal performance. Further, as the number of universal forwarders grow in your environment, managing all of them from one central system is inevitable. In this course, Splunk Enterprise Administration: Managing Data and Forwarders, you will learn the foundational knowledge to configure forwarders for efficiency, manage thousands for forwarders using Splunk deployment servers, and monitor forwarders. First, you will learn how the forwarders work and understand the difference between Splunk universal forwarder and heavy forwarder. Next, you will discover the various options to configure forwarders such as compression, encryption and load balancing. Finally, you will explore how to use Splunk deployment server to manage thousands of forwarders by configuring deployment apps and deployment clients. When you are finished with this course, you will have the skills and knowledge of Splunk administration needed to effectively configure and manage data ingestion.

About the author
About the author

Passionate about IT Ops, Karun has 20+ years of hands on experience with Linux, Cloud tech, Monitoring and Log aggregation. He enjoys creating learning materials that are engaging and provide immediate practical value.

More from the author
More courses by Karun Subramanian
Section Introduction Transcripts
Section Introduction Transcripts

Course Overview
[Autogenerated] Hi, everyone. My name is Karen Subramanian on Welcome to my course Splunk Enterprise Administration, Managing data and forwarders. I am a nightie operations expert under Splunk certified architect. I have architected on implemented many large scale Splunk installations as a Splunk administrator. One off your critical responsibilities is to get the data ingested. In this course, we are going to deep dive into the most common way of getting data and using universal forwarders, you'll also gain the knowledge of how to manage thousands off universal forwarders from one central system, the Deployment Server. Some of the major topics that we will court include how he knows and forwarder works and the difference between my genius and far Order Onda Heavy forwarder. How to implement various forward options such as automatic load balancing on encryption Use deployment servers to manage forwarders by creating deployment abs on deployment plants. Monitor universal forwarder using monitoring console. By the end of this course, you will know how to install and configure Splunk universal forwarders and manage them using deployment servers before being the course. You should be family read Splunk Web interface, fundamental knowledge off UNIX systems. I hope you'll join me on this journey to learn how to configure and manage data ingestion in Splunk with the Splunk Enterprise Administration managing data and forwarder scores at learn site.