Splunk Enterprise is the data collection, indexing, and visualization engine for operational intelligence.
Splunk Enterprise Overview
A technical overview of Splunk platform features and documentation.
Includes information about new features, known issues, and fixed problems.
How to install or migrate Splunk Enterprise. Includes system migration requirements and licensing information.
If you are new to Splunk search, start here. Guides you through adding data, searching data, and creating simple dashboards.
Data Model and Pivot Tutorial
Introduction to adding data, building simple data models, and creating new pivots.
Splunk Enterprise Scenarios
Contains scenario-based topics. Each topic illustrates a complex use case that is comprised of several tasks involving multiple product features. Some of these scenarios may involve Splunk apps and add-ons.
How to create and dispatch alerts that are triggered when specific conditions are met.
Dashboards and Visualizations
Create and edit dashboards by using Splunk Web's interactive editors and simple XML source code. Includes information about visualizations that you can use to show search results. Also includes a reference to simple XML for dashboards and a chart configuration reference.
How to use Pivot to create tables and charts without the use of the Splunk Search Processing Language (SPL).
How to save and manage searches and pivots as a report. Includes report acceleration, report scheduling, and printing reports as PDFs.
How to search and use the Splunk Search Processing Language. Includes examples of searches to calculate statistics, evaluate fields, and report on search results.
Catalog of the search commands that make up the Splunk Search Processing Language with complete syntax, descriptions, and examples for each search command. Includes an SPL™ Command Cheat Sheet for quick reference.
Starting point for Splunk Enterprise administration. Includes information about managing licenses, configuring Splunk Enterprise, and using the command-line interface. Includes a complete reference to all Splunk Enterprise configuration files.
Getting Data In
How to get your machine data into your Splunk deployment and ensure that it is indexed efficiently and effectively.
Knowledge Manager Manual
How to create, use and manage event types, tags, lookups, field extractions, workflow actions, reports, views, and data models.
Securing Splunk Enterprise
How to create and authenticate users, configure SSL, use audit features to secure your data, and harden Splunk deployments to reduce vulnerability and risk.
How to analyze activity and diagnose problems with your Splunk deployment.
Capacity Planning Manual
This manual provides high-level guidance on how to plan resource capacity for a Splunk Enterprise deployment and helps you decide when to add resources and distribute Splunk Enterprise services to maintain performance.
Distributed Deployment Manual
Scale Splunk Enterprise by distributing functionality across multiple forwarders, indexers, and search heads.
Scale search functionality with search heads and search head clusters.
Monitoring Splunk Enterprise
Monitor your Splunk Enterprise instance or deployment.
How to use forwarders to get data into your Splunk deployment.
Developing Views and Apps for Splunk Web
Implement Splunk Platform extensions, including custom visualizations, custom alert actions, and modular inputs.
Module System Reference
Includes the module system extension dictionary and APIs.
Module System User Manual
Includes the Splunk Web infrastructure layer for building custom apps using the module system.
REST API Reference Manual
Reference documentation for Splunk REST API endpoints.