From the course: Practical Splunk: Build Data Intelligence through SPL, Reports, and Dashboards
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Learning objectives - Splunk Tutorial
From the course: Practical Splunk: Build Data Intelligence through SPL, Reports, and Dashboards
Learning objectives
- Welcome to lesson five, grouping Events and using lookups. In this lesson, you learn even more ways to explore and enhance your mission data using Splunk. First, you learn the techniques you can use to group and correlate data. We do this by exploring the transaction command. Next, you learn how to use the join and Append family of SPL commands. They can be extremely useful in correlating data. Finally, you learn to use one of the widely used knowledge objects, lookups, to enhance your search results. We create a lookup table from scratch using Splunk tutorial data. By the end of this lesson, you'll have learned how to group and correlate data effectively and using lookups in Splunk. Let's get started.