Mastering Splunk 8: Become an expert at implementing the advanced features and capabilities of Splunk 8
暫譯: 精通 Splunk 8:成為實現 Splunk 8 高級功能與能力的專家
Miller, James D.
- 出版商: Packt Publishing
- 出版日期: 2020-12-04
- 定價: $1,780
- 售價: 9.0 折 $1,602
- 語言: 英文
- 頁數: 456
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1838987487
- ISBN-13: 9781838987480
-
相關分類:
Splunk
立即出貨 (庫存=1)
商品描述
Delve into Splunk and extend intelligence capabilities, and leverage machine learning to explore data efficiently
Key Features
- Gain the expertise you need to implement the advanced features and capabilities of Splunk 8
- Get to grips with advanced Splunk features and create compelling reports and dashboards
- Develop and manage advanced Splunk pipelines to integrate intelligence capabilities within your organization
Book Description
Splunk is the most widely used engine for working with machine-generated data. This expert-level guide will help you to leverage advanced use cases to drive business growth using operational intelligence and business analytics features.
You'll start with an introduction to the new features in Splunk 8 and cover step-by-step exercises that will help you to understand each feature in depth. Next, you'll explore key tasks such as workload management, performance and alerting, Splunk Enterprise Security, and advanced indexing. You'll also learn how to create categorical charts and run analytical operations on metrics within the Splunk Analytics workspace, before understanding how to deliver insights across your organization even when faced with limited or complex data using advanced data analytics. The book will also show you how to monitor and maintain Splunk environments using advanced dashboards. Later, you'll create custom data visualizations and update dashboards using drag and drop and the UI-based dashboard editor. Finally, you'll add SplunkJS to a web app and use the Splunk Machine Learning Toolkit (MLTK) as an extension to the core Splunk platform using real-world use cases.
By the end of this book, you'll have learned how to use various Splunk features to extend intelligence capabilities and perform machine learning to explore data effectively.
What You Will Learn
- Understand the components of Splunk 8 and how they work
- Convert distributed search environments to clusters and configure disaster recovery sites using index clustering
- Find out how to integrate Splunk with platforms such as AWS and Microsoft Azure
- Use Search Processing Language (SPL) within Splunk macros to create efficient searching
- Detect suspicious patterns in data with advanced event correlation searches
- Explore machine learning with Splunk MLTK
- Review the beta dashboard editor using working examples
- Use SplunkJS Stack libraries to enhance web apps
Who this book is for
This Splunk book is for data professionals, data analysts, and Splunk users looking to leverage the advanced features of the Splunk Enterprise platform to derive valuable business insights from machine data. The book is also a useful expert-level guide for individuals from all facets of IT, business, and security. Prior knowledge of Splunk and its features is mandatory to get the most out of this book.
商品描述(中文翻譯)
深入了解 Splunk,擴展智能能力,並利用機器學習高效探索數據
主要特點
- 獲得實施 Splunk 8 先進功能和能力所需的專業知識
- 掌握高級 Splunk 功能,創建引人注目的報告和儀表板
- 開發和管理高級 Splunk 管道,以在您的組織內整合智能能力
書籍描述
Splunk 是處理機器生成數據的最廣泛使用引擎。本專家級指南將幫助您利用先進的使用案例,通過運營智能和商業分析功能推動業務增長。
您將從介紹 Splunk 8 的新功能開始,並涵蓋逐步練習,幫助您深入理解每個功能。接下來,您將探索關鍵任務,例如工作負載管理、性能和警報、Splunk 企業安全以及高級索引。您還將學習如何在 Splunk Analytics 工作區內創建類別圖表並對指標執行分析操作,然後了解如何在面對有限或複雜數據時,利用高級數據分析在整個組織中提供見解。本書還將向您展示如何使用高級儀表板監控和維護 Splunk 環境。稍後,您將使用拖放和基於 UI 的儀表板編輯器創建自定義數據可視化並更新儀表板。最後,您將在網頁應用中添加 SplunkJS,並使用 Splunk 機器學習工具包 (MLTK) 作為核心 Splunk 平台的擴展,並使用實際案例。
到本書結束時,您將學會如何使用各種 Splunk 功能來擴展智能能力,並有效地執行機器學習以探索數據。
您將學到什麼
- 了解 Splunk 8 的組件及其工作原理
- 將分佈式搜索環境轉換為集群,並使用索引集群配置災難恢復站點
- 了解如何將 Splunk 與 AWS 和 Microsoft Azure 等平台集成
- 在 Splunk 宏中使用搜索處理語言 (SPL) 來創建高效搜索
- 通過高級事件關聯搜索檢測數據中的可疑模式
- 使用 Splunk MLTK 探索機器學習
- 使用工作示例回顧 beta 儀表板編輯器
- 使用 SplunkJS Stack 庫增強網頁應用
本書適合誰
本 Splunk 書籍適合數據專業人士、數據分析師和希望利用 Splunk 企業平台的高級功能從機器數據中獲取有價值商業見解的 Splunk 用戶。本書也是針對 IT、商業和安全各個領域的專家級指南。為了充分利用本書,必須具備對 Splunk 及其功能的先前知識。