Splunk Enterprise Data Administration is a core course for Splunk administrators who manage data pipelines within a Splunk environment.
What You Will Learn
- Configure universal and heavy forwarders to collect and route data to Splunk indexers
- Define and manage sourcetypes, index-time field extractions, and data parsing
- Create and manage indexes, configure index size and retention policies
- Use the Deployment Server to manage forwarder configurations at scale
- Monitor data input health, identify ingestion bottlenecks, and troubleshoot data pipeline issues
Who Should Attend
Splunk administrators responsible for onboarding data sources, managing indexes, and ensuring reliable data delivery in a Splunk Enterprise deployment.
Prerequisites
Completion of Splunk Enterprise System Administration or equivalent experience managing a Splunk Enterprise environment.





