Normalize and enrich your data using knowledge objects such as field extractions, lookups and tags Course
48 minutes
Course description
Explore the Splunk knowledge objects used for data normalization and enrichment. View quick and detailed demonstrations on how to perform data normalization and enrichment.Syllabus
Demo — Lookups
Video - 00:08:00
Demo: Define and verify a lookup.
Demo — Tags
Video - 00:05:00
Demo: Use tags to categorize event data.
Demo — Field aliases
Video - 00:10:00
Understand and define a field alias.
Demo — Calculated fields
Video - 00:07:00
Demo: Make the use of calculated fields.
Demo — Field extractions
Video - 00:09:00
Demo: Conduct field extractions on indexed data.
Data normalization and enrichment
Video - 00:09:00
Theory: Understand the purpose of data normalization and enrichment.
Unlock 7 days of free training
- 1,400+ hands-on courses and labs
- Certification practice exams
- Skill assessments
Plans & pricing
Infosec Skills Personal
$299 / year
- 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Custom certification practice exams (e.g., CISSP, Security+)
- Skill assessments
- Infosec peer community support
Infosec Skills Teams
$799 per license / year
- Team administration and reporting
- Dedicated client success manager
-
Single sign-on (SSO)
Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
-
Integrations via API
Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
- 190+ role-guided learning paths and assessments (e.g., Incident Response)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Create and assign custom learning paths
- Custom certification practice exams (e.g., CISSP, CISA)
- Optional upgrade: Guarantee team certification with live boot camps