From the course: Splunk Core Certified User (SPLK-1001) Cert Prep

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Module overview

Module overview

Now, in the last two modules, we've discussed how you can use keywords and quoted phrases and also searching with fields to pull data from your index. But in practice, you're going to have a lot of scenarios where you need to further analyze this data that you pull from the index. And in order to do this kind of analysis in Splunk, you need to understand how to use different commands. Now to understand how to use commands in Splunk, it is important to understand the foundations of Splunk search processing language. So the Splunk search language is the language that you're going to use to search data in Splunk, the same as you can use SQL for databases. So in this module, we are going to discuss search language fundamentals. So we are going to start by discussing search language syntax. And then after that, we are going to discuss search pipeline readability. Then following that, we are going to start looking at some commands in Splunk, starting with the fields command. Then we are…

Contents