LEADER 05203nam 2200709 a 450 001 9910822627003321 005 20240516173018.0 010 $a1-84969-329-3 010 $a1-299-19842-2 035 $a(CKB)2550000001006063 035 $a(EBL)1103992 035 $a(OCoLC)828794315 035 $a(SSID)ssj0000907427 035 $a(PQKBManifestationID)11486234 035 $a(PQKBTitleCode)TC0000907427 035 $a(PQKBWorkID)10884831 035 $a(PQKB)10882937 035 $a(Au-PeEL)EBL1103992 035 $a(CaPaEBR)ebr10654594 035 $a(CaONFJC)MIL451092 035 $a(PPN)228014964 035 $a(OCoLC)842846798 035 $a(OCoLC)ocn842846798 035 $a(FR-PaCSA)88850571 035 $a(CaSebORM)9781849693288 035 $a(MiAaPQ)EBC1103992 035 $a(EXLCZ)992550000001006063 100 $a20130222d2013 uy 0 101 0 $aeng 135 $aur|n|---||||| 181 $ctxt$2rdacontent 182 $cc$2rdamedia 183 $acr$2rdacarrier 200 10$aImplementing Splunk $ebig data reporting and development for operational intelligence : learn to transform your machine data into valuable IT and business insights with this comprehensive and practical tutorial /$fVincent Bumgarner 205 $aFirst edition 210 1$aBirmingham :$cPackt Pub.,$d2013. 215 $a1 online resource (448 pages) 225 1 $aCommunity experience distilled 225 0$aCommunity experience distilled 300 $aIncludes index. 311 $a1-84969-328-5 327 $aCover; Copyright; Credits; About the Author; About the Reviewers; www.PacktPub.com; Table of Contents; Preface; Chapter 1: The Splunk Interface; Logging in to Splunk; The Home app; The top bar; Search app; Data generator; The Summary view; Search; Actions; Timeline; The field picker; Fields; Search results; Options; Events viewer; Using the time picker; Using the field picker; Using Manager; Summary; Chapter 2: Understanding Search; Using search terms effectively; Boolean and grouping operators; Clicking to modify your search; Event segmentation; Field widgets; Time; Using fields to search 327 $aUsing the field pickerUsing wildcards efficiently; Only trailing wildcards are efficient; Wildcards are tested last; Supplementing wildcards in fields; All about time; How Splunk parses time; How Splunk stores time; How Splunk displays time; How time zones are determined and why it matters; Different ways to search against time; Specifying time in-line in your search; _indextime versus _time; Making searches faster; Sharing results with others; Saving searches for reuse; Creating alerts from searches; Schedule; Actions; Summary; Chapter 3: Tables, Charts, and Fields; About the pipe symbol 327 $aUsing top to show common field valuesControlling the output of top; Using stats to aggregate values; Using chart to turn data; Using timechart to show values over time; timechart options; Working with fields; A regular expression primer; Commands that create fields; eval; rex; Extracting loglevel; Using the Extract Fields interface; Using rex to prototype a field; Using the admin interface to build a field; Indexed fields versus extracted fields; Summary; Chapter 4: Simple XML Dashboards; Why build a dashboard?; Using wizards to build dashboards; Scheduling the generation of dashboards 327 $aWhen to edit the XML directly?UI Examples app; Building Forms; Creating a form from a dashboard; Driving multiple panels from one form; Post-processing search results; Post-processing limitations; Panel 1; Panel 2; Panel 3; Final XML; Summary; Chapter 5: Advanced Search Examples; Using subsearches to find loosely related events; Subsearch; Subsearch caveats; Nested subsearches; Using transaction; Using transaction to determine the session length; Calculating the aggregate of transaction statistics; Combining subsearches with transaction; Determining concurrency 327 $aUsing transaction with concurrencyUsing concurrency to estimate server load; Calculating concurrency with a by clause; Calculating events per slice of time; Using timechart; Calculating average requests per minute; Calculating average events per minute, per hour; Rebuilding top; Summary; Chapter 6: Extending Search; Using tags to simplify search; Using event types to categorize results; Using lookups to enrich data; Defining a lookup table file; Defining a lookup definition; Defining an automatic lookup; Troubleshooting lookups; Using macros to reuse logic; Creating a simple macro 327 $aCreating a macro with arguments 330 $aLearn to effectively use, configure, deploy and extend Splunk and implement its powerful capabilities 517 3 $aBig data reporting and development for operational intelligence 606 $aElectronic data processing 606 $aDatabase management 615 0$aElectronic data processing. 615 0$aDatabase management. 676 $a006.78 700 $aBumgarner$b Vincent$01661484 801 0$bMiAaPQ 801 1$bMiAaPQ 801 2$bMiAaPQ 906 $aBOOK 912 $a9910822627003321 996 $aImplementing Splunk$94017415 997 $aUNINA