This course is part of the following Certifications:
To be successful, students should have a solid understanding of the following:
- How Splunk works
- Knowledge objects
- Using Lookup Commands
- Adding a Subsearch
- Using the return Command
This three-hour course is designed for power users who want to learn how to use lookups and subsearches to enrich their results. Topics will focus on lookup commands and explore how to use subsearches to correlate and filter data from multiple sources.