SlideShare a Scribd company logo
Copyright	©	2015	Splunk	Inc.
Brett	Knudson
Sales	Engineer
Getting	Started	with	
Splunk Enterprise
Legal	Notices
During	the	course	of	this	presentation,	we	may	make	forward-looking	statements	regarding	future	
events	or	the	expected	performance	of	the	company.	We	caution	you	that	such	statements	reflect	our	
current	expectations and estimates based	on	factors	currently	known	to	us	and	that	actual	events	or	
results	could	differ	materially.	For	important	factors	that	may	cause	actual	results	to	differ	from	those	
contained	in	our	forward-looking	statements,	please	review	our	filings with	the	SEC. The	forward-
looking	statements	made	in	this	presentation	are	being	made	as	of	the	time	and	date	of	its	live	
presentation. If reviewed	after its	live	presentation, this	presentation	may	not	contain	current	or	
accurate	information. We	do	not	assume	any	obligation	to	update	any	forward-looking	statements	
we may make. In	addition,	any	information	about	our roadmap	outlines	our	general	product	direction	
and	is	subject	to	change	at	any	time	without	notice.	 It is	for	informational	purposes	only	and	shall	
not be	incorporated	into	any	contract	or	other	commitment.	 Splunk	undertakes	no	obligation	either	
to	develop	the	features	or	functionality	described or	to	include	any	such	feature	or	functionality	in	a	
future	release.
2
Brett	Knudson
Sales	Engineer	
Joined	Splunk	in	August	2015
Based	in	Minneapolis,	MN
N0BAK
bknudson@splunk.com
3
4
Making machine	data	accessible,
usable	and	valuable	to	everyone.	
4
Our	Plan	of	Action
5
1.Setting	the	stage.
2.How	does	Splunk	fit	in	the	landscape?
3.What	differentiates Splunk?
4.Components	that	make	up	Splunk?
5.Demo	- How	it	works?
The	Accelerating	Pace	of	Data
Volume		|		Velocity |		Variety	|	Variability
GPS,
RFID,
Hypervisor,
Web	Servers,
Email,	Messaging,
Clickstreams,	Mobile,	
Telephony,	IVR,	Databases,
Sensors,	 Telematics,	Storage,
Servers,	 Security	 Devices,	Desktops	
Machine data is	the	fastest	growing,	most	
complex,	most	valuable	area	of	big	data
6
Industry	Leading	Platform	For	Machine	Data
Machine	Data:	Any	Location,	Type,	Volume
Online	
Services Web	
Services
Servers
Security GPS	
Location
Storage
Desktops
Networks
Packaged	
Applications
Custom
ApplicationsMessaging
Telecoms
Online	
Shopping	
Cart
Web	
Clickstreams
Databases
Energy	
Meters
Call	Detail	
Records
Smartphones	
and	Devices
RFID
On-
Premises
Private	
Cloud
Public	
Cloud
Platform	Support	(Apps	/	API	/	SDKs)
Enterprise	Scalability
Universal	Indexing
Answer	Any	Question
Developer
Platform
Report	
and	
analyze
Custom	
dashboards
Monitor	
and	alert
Ad	hoc	
search
Universal	
Machine	Data	
Platform
Industry	Leading	Platform	For	Machine	Data
Machine	Data:	Any	Location,	Type,	Volume
Online	
Services Web	
Services
Servers
Security GPS	
Location
Storage
Desktops
Networks
Packaged	
Applications
Custom
ApplicationsMessaging
Telecoms
Online	
Shopping	
Cart
Web	
Clickstreams
Databases
Energy	
Meters
Call	Detail	
Records
Smartphones	
and	Devices
RFID
On-
Premises
Private	
Cloud
Public	
Cloud
Platform	Support	(Apps	/	API	/	SDKs)
Enterprise	Scalability
Universal	Indexing
Answer	Any	Question
Developer
Platform
Report	
and	
analyze
Custom	
dashboards
Monitor	
and	alert
Ad	hoc	
search
Any	amount,	any	location,	any	source
Schema-
on-the-fly
Universal	
indexing
No	
back-end	
RDBMS
No	need	
to	filter	
data
8
perf
shell
API
Mounted	File	Systems
hostnamemount
syslog
TCP/UDP
Event	Logs	
Performance
Active	
Directory
syslog	hosts
and	network	devices
Unix,	Linux	and	Windows	hosts
Local	File	Monitoring
Splunk	Forwarder
virtual
host
Windows
Scripted	or	Modular	Inputs
shell	scripts
API	subscriptions
Mainframes*nix
Wire	Data
Splunk	App	for	Stream
Efficient	Time	Based	Indexing
Splunk	Differentiators
Splunk	Differentiators
10
• Role	Based	Access	Control
• Define	roles	and	assign	users	to	them.
• Integrate	with	LDAP	or	SSO	such	as	SAML.
• Centralized	Access
• Allows	multiple	users	across	the	organization	to	securely	leverage	same	
instance	with	multiple	data	types.
• Align	data	access	to	policies	in	the	organization
• Secure	Data	Transmission
• Universal	Forwarders	provides	easy,	reliable,	secure	data	collection	
from	remote	sources.
• SSL	security,	data	compression,	configurable	throttling	and	buffering.
Splunk	Components	
11
Data	Collection	Layer	- Universal	Forwarders,	syslog,	API,	TCP,	Scripts,	Wire,	etc.		
Data	Indexing	Layer	– Indexer(s).		
Data	Presentation	Layer– Search	Head(s)		
Universal	Forwarder
1.
2.
3.
4.
How	to	Get	Started
Download
Install
Forward	Data
Search
Databases
Networks
Servers
Virtual	
Machines
Smart	
phones	
and	
Devices
Custom
Applications
Security
WebServer
Sensors
Four	steps:
Demo	– How	it	Works
13
1. Installing	and	Starting	Splunk
2. Ingesting	Data
3. Search	Basics	
• Search	Bar
• Time	Picker
• Extracted	Fields	
4. Dynamic	Field	Extraction	
5. Alerting
6. Statistics	and	Reporting
7. Command	Language
8. Splunk	Applications
Demo
14
Supplemental	Information
15
Download
• www.splunk.com/download
Search	Tutorial:
• docs.splunk.com/Documentation/Splunk/latest/SearchTutorial
Tutorial	Data:
• docs.splunk.com/images/Tutorial/tutorialdata.zip
Education	Resources
16
Splunk	Education
• www.splunk.com/education
Using	Splunk,	Searching	and	Reporting,	Developing	Apps,	
Administering	Splunk,	and	more!
Books
• Implementing	Splunk:	Big	Data	Essentials	for	Operational	Intelligence
• Splunk	Essentials
• Exploring	Splunk
• Splunk	Operational	Intelligence	Cookbook
Things	to	Remember
17
1. Splunk	is	Free	– Download	and	get	started	today
2. Quick	Time	to	Value
3. Leverage	the	Splunk	Community
• splunkbase.splunk.com
• answers.splunk.com
• blogs.splunk.com
4. Happy	Splunking!!
Questions?
Thank	You

More Related Content

PDF
Getting Started with Splunk Enterprise
PDF
Splunk Webinar: Splunk für Application Management
PDF
Splunk in Otto: Business Analytics
PPTX
DevOps without Measurement is a Fail
PPTX
How to Lower or Justify your Cloud Spend
PPTX
SRE-iously! Reliability!
PPTX
Cerner at SplunkLive! Minneapolis
PPTX
Hunk - Unlocking the Power of Big Data
Getting Started with Splunk Enterprise
Splunk Webinar: Splunk für Application Management
Splunk in Otto: Business Analytics
DevOps without Measurement is a Fail
How to Lower or Justify your Cloud Spend
SRE-iously! Reliability!
Cerner at SplunkLive! Minneapolis
Hunk - Unlocking the Power of Big Data

Viewers also liked (6)

PPTX
Danfoss - Splunk for Vulnerability Management
PPTX
Taking Splunk to the Next Level - Management
PPTX
SplunkLive! - Splunk for IT Operations
PPTX
Taking Splunk to the Next Level - Technical
PPTX
Using Splunk at MoneyGram International
PPTX
Splunk for Security-Hands On
Danfoss - Splunk for Vulnerability Management
Taking Splunk to the Next Level - Management
SplunkLive! - Splunk for IT Operations
Taking Splunk to the Next Level - Technical
Using Splunk at MoneyGram International
Splunk for Security-Hands On
Ad

Similar to Getting Started with Splunk Enterprise (20)

PPTX
SplunkLive! Tampa: Getting Started Session
PDF
Getting Started with Splunk Enterprise
PPTX
SplunkLive! Splunk Enterprise 6.3 - Data On-boarding
PDF
SplunkLive! Amsterdam 2015 Breakout - Getting Started with Splunk
PPTX
Getting Started with Splunk Enterprises
PPTX
Getting Started with Splunk Enterprise
PPTX
Getting Started with Splunk (Hands-On)
PPTX
Getting Started with Splunk Enterprise Hands-On
PPTX
Getting Started with Splunk Breakout Session
PPTX
Getting Started with Splunk Enterprise Hands-On
PPTX
Getting Started with Splunk Breakout Session
PPTX
SplunkLive! What's New in Splunk 6 Session
PPTX
Splunk Webinar: Verwandeln Sie Datensilos in Operational Intelligence
PPTX
Getting Started with Splunk Enterprise
PDF
Getting Started with Splunk Enterprise
PDF
Virtual SplunkLive! for Higher Education Overview/Customers
PPTX
Splunk Discovery Day Düsseldorf 2016
PPTX
Splunk - Verwandeln Sie Datensilos in Operational Intelligence
PPTX
SplunkLive! Paris 2018: Splunk Overview
PDF
Splunk Discovery Indianapolis - October 10, 2017
SplunkLive! Tampa: Getting Started Session
Getting Started with Splunk Enterprise
SplunkLive! Splunk Enterprise 6.3 - Data On-boarding
SplunkLive! Amsterdam 2015 Breakout - Getting Started with Splunk
Getting Started with Splunk Enterprises
Getting Started with Splunk Enterprise
Getting Started with Splunk (Hands-On)
Getting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Breakout Session
Getting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Breakout Session
SplunkLive! What's New in Splunk 6 Session
Splunk Webinar: Verwandeln Sie Datensilos in Operational Intelligence
Getting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
Virtual SplunkLive! for Higher Education Overview/Customers
Splunk Discovery Day Düsseldorf 2016
Splunk - Verwandeln Sie Datensilos in Operational Intelligence
SplunkLive! Paris 2018: Splunk Overview
Splunk Discovery Indianapolis - October 10, 2017
Ad

More from Splunk (20)

PDF
Splunk Leadership Forum Wien - 20.05.2025
PDF
Splunk Security Update | Public Sector Summit Germany 2025
PDF
Building Resilience with Energy Management for the Public Sector
PDF
IT-Lagebild: Observability for Resilience (SVA)
PDF
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
PDF
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
PDF
Praktische Erfahrungen mit dem Attack Analyser (gematik)
PDF
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
PDF
Security - Mit Sicherheit zum Erfolg (Telekom)
PDF
One Cisco - Splunk Public Sector Summit Germany April 2025
PDF
.conf Go 2023 - Data analysis as a routine
PDF
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
PDF
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
PDF
.conf Go 2023 - Raiffeisen Bank International
PDF
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
PDF
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
PDF
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
PDF
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
PDF
.conf go 2023 - De NOC a CSIRT (Cellnex)
PDF
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
Splunk Leadership Forum Wien - 20.05.2025
Splunk Security Update | Public Sector Summit Germany 2025
Building Resilience with Energy Management for the Public Sector
IT-Lagebild: Observability for Resilience (SVA)
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
Praktische Erfahrungen mit dem Attack Analyser (gematik)
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
Security - Mit Sicherheit zum Erfolg (Telekom)
One Cisco - Splunk Public Sector Summit Germany April 2025
.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - De NOC a CSIRT (Cellnex)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)

Recently uploaded (20)

PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
Cloud computing and distributed systems.
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Approach and Philosophy of On baking technology
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PPTX
Programs and apps: productivity, graphics, security and other tools
PPTX
MYSQL Presentation for SQL database connectivity
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PPTX
sap open course for s4hana steps from ECC to s4
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PPTX
Spectroscopy.pptx food analysis technology
PDF
Empathic Computing: Creating Shared Understanding
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Network Security Unit 5.pdf for BCA BBA.
Cloud computing and distributed systems.
20250228 LYD VKU AI Blended-Learning.pptx
Digital-Transformation-Roadmap-for-Companies.pptx
Approach and Philosophy of On baking technology
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
Programs and apps: productivity, graphics, security and other tools
MYSQL Presentation for SQL database connectivity
Dropbox Q2 2025 Financial Results & Investor Presentation
sap open course for s4hana steps from ECC to s4
The AUB Centre for AI in Media Proposal.docx
Diabetes mellitus diagnosis method based random forest with bat algorithm
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
MIND Revenue Release Quarter 2 2025 Press Release
Spectroscopy.pptx food analysis technology
Empathic Computing: Creating Shared Understanding

Getting Started with Splunk Enterprise