Who should attend
Users/Analysts Administrators Engineers
Certifications
This course is part of the following Certifications:
Prerequisites
To be successful, students must have completed these Splunk Education course(s) or have equivalent working knowledge:
Course Content
This course is designed for Splunk users, analysts, and administrators who want to learn how to modify and manipulate output and normalize data. You will learn how to use the untable, xyseries, appendpipe, eventstats, and streamstats commands to modify result sets and use the eval command and eval functions to manipulate field values and normalize data across multiple data sources.