Splunk by Cisco
General
The Splunk Platform
Creating Classic Dashboards (SP-CCD)
About the course

This six-hour course is designed for Splunk power users who want to create advanced, interactive dashboards using the classic, simple XML framework. The course focuses on tokens, user inputs, dynamic drilldowns, and event handlers. It combines a strong technical focus with the opportunity to practice in a realistic lab environment.


Prerequisites

To be successful, students should have a solid understanding of these single subject courses:

  • What is Splunk? (Retired)
  • Introduction to Dashboards (ITD)
  • Using Fields (SUF)
  • Visualizations (SVZ)

Or the following legacy courses: Splunk Fundamentals 1&2.

Course Objectives

  • Using Tokens
  • Adding User inputs
  • Improving Performance
  • Customizing Dashboards
  • Creating Dynamic Drilldowns
  • Adding Event Handlers
Course content

Topic 1 – Classic Dashboards

  • Compare dashboards and forms
  • Create prebuilt panels
  • Troubleshoot views

Topic 2 – Using Tokens

  • Describe how tokens work
  • Define token syntax
  • Use token filters

Topic 3 – Adding User Inputs

  • Define user inputs
  • Add a user input
  • Create cascading inputs

Topic 4 – Improving Performance

  • Identify performance improvement methods
  • Use tstats and data model acceleration
  • Create a base & chain search

Topic 5 – Customizing Views

  • Customize charts
  • Use event annotations
  • Customize panels

Topic 6 – Create Dynamic Drilldowns

  • Identify types of drilldowns
  • Use the drilldown editor
  • Create a dynamic drilldown

Topic 7 – Adding Event Handlers

  • Name event handler types
  • Define event actions
  • Create a contextual drilldown