Course Overview
This 13.5-hour course is for experienced Splunk Enterprise administrators new to Splunk Clusters. The course provides the fundamental knowledge of deploying and managing Splunk Enterprise in a clustered environment. While Splunk Clusters are supported in Windows environments, the class lab environment is running Linux instances only.
Please note that this class may run over three days, with 4.5 hour sessions each day.
Certifications
This course is part of the following Certifications:
Prerequisites
To be successful, students should have a solid understanding of the following courses:
- !Splunk Enterprise System Administration (SESA)
- Splunk Enterprise Data Administration (SEDA)
- Troubleshooting Splunk Enterprise (TSE)
Course Objectives
- Identify factors affecting large-scale Splunk deployments
- Deploy and configure single- and multi-site indexer clusters
- Deploy and configure a Splunk search head cluster
- Deploy apps and configuration bundles in Splunk clusters
- Manage KV store collections and lookups in Splunk clusters
- Monitor and identify clustering issues with Monitoring Console
- Scale Splunk indexer cluster with SmartStore