Splunk Metrics Workspace provides a user interface within the Search & Reporting app for monitoring and analyzing metrics data and accelerated datasets without editing SPL. You can create interactive visualizations in the workspace, and then perform a variety of analytic functions to gain insight into your system’s metrics and performance. The Splunk Metrics Workspace helps you to quickly identify any aspects of your data that require further investigation.

Overview

This course provides Splunk users in-depth information about metrics, ingesting and searching metrics data, and how to use the Metrics Workspace to analyze and create visualizations.

Skills Covered

  • Metrics Overview
  • Metrics Terminology
  • Onboard Metrics Data
  • Metrics Indexing
  • Protocols to Ingest Metrics Data
  • Metrics SPL Commands
  • Log to metrics Conversion
  • Use the Metrics Workspace
  • Metrics Best Practices

Prerequisites

Required:

  • Splunk Fundamentals 1
  • Splunk Fundamentals 2
  • Splunk System Administration

Recommended

  • Splunk Enterprise Data Administration
  • Splunk Fundamentals 3
  • Some Linux experience

Target Audience

Everyone can attend.

Course Curriculum

Module 1: Metrics Overview

  • Understand the differences between metrics and events
  • Describe metrics and metrics terminology
  • Identify the storage and performance benefits of metrics
  • Review use cases for searching metrics data
  • Describe metrics dimensions and time series

Module 2: Indexing and Searching Metrics

  • Describe metrics indexing
  • Create metrics indexes
  • Onboard metrics data
  • Use the mcatalog, msearch, and mstats commands

Module 3: Bringing Metrics Into Splunk: Metrics-Formatted Data

  • Review metrics source types and supported protocols
  • Use collectd to ingest metrics data
  • Use StatsD to ingest metrics data
  • Verify onboarding of metrics

Module 4: Bringing Metrics Into Splunk: Converting Logs to Metrics

  • Describe the log-to-metrics process
  • Use mcollect and meventcollect to convert logs to metrics at search time
  • Use Splunk Web to convert logs to metrics at ingent time
  • Use config files to convert logs to metrics at ingest time

Module 5: Managing Metrics Indexes and Metrics Rollups

  • Manage metrics indexes
  • Understand metrics rollups
  • Configure rollup policies

Module 6: Analytics Workspace and SAI

  • Use the Analytics Workspace to analyze and visualize metrics data
  • Describe the Splunk App for Infrastructure (SAI)

Module 7: Best Practices and Performance Tuning

  • Describe metrics best practices
  • Tune the performance of metrics processing

Dates & Locations

Let’s make it work for you

Can’t find a date that fits? Need to train your whole team? Looking for a discount?
Speak to one of our learning experts today.

Trainocate exam and cert

Exam & Certification

This course is not associated with any Certification.

Training & Certification Guide

Frequently Asked Questions

Speak to a Training Consultant

All courses are HRD Claimable.
Get in touch with our team via the form or WhatsApp us on +6011-5119 6631

Preferred mode of training
Checkboxes