Creating Field Extractions (CFE) – Contenuti

Contenuti dettagliati del Corso

Module 1 - Use the Field Extractor

  • Understand types of extracted fields and when they are extracted
  • Explore the Splunk Web Field Extractor (FX)

Module 2 - Create Regex Field Extractions

  • Identify basics of regular expressions (regex)
  • Understand the regex field extraction workflow
  • Edit regex for field extractions

Module 3 - Creating Delimited Field Extractions

  • Identify delimited field values in event data
  • Explore the delimited field extraction workflow
  • Explain the use of forwarder management
  • Configure forwarders to be deployment clients
  • Managing forwarders using deployment apps