You should start looking through the docs provided by MarioM. It also helps to give yourself a task whilst learning (e.g. Want to monitor disk space), this way you can follow the process from start to finish. For example, on Linux installation this could be:
You should also jump on the IRC chat channel "#splunk" (link: http://www.splunk.com/view/SP-CAAACDF). As there many helpful and friendly users there. So you'll be able to get a quick answer to simple queries.
Hope this helps
thk's your answer, i started with the manual user and i finished it
and now i'm using distributed deployment manual for deploying topologies, and forwarders
it's very interessting
it should probably also be noted... Splunk is such a vast and "deep" platform that you can never truly "master" it. I'm sure even some of the Splunk "veterans" do not know everything in the world of Splunk.
for forwading can someone explain the basic procedure to me ,using universal forwarding
ps: i followed all the steps mentioned on distributed deployement manual ,but it doesn't seem to work
please can someone help