Splunk Cloud Platform

How is Splunk Cloud admin certification different from Splunk sys admin?

chints0357
Explorer

How is Splunk Cloud admin certification different from Splunk sys admin?

Labels (1)
0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

There are several differences between Splunk Enterprise and Splunk Cloud when it comes to administration.

1) You have no access to the file system/CLI

2) You have no access to the Cluster Manager

3) You have no access to the indexers

4) All admin tasks are performed via a search head UI or by installing an app.

5) All apps must pass vetting before they can be installed.  You will be able to install most(?) apps yourself, but some must be installed by Splunk Support.  Other apps are not supported on Splunk Cloud at all.

6) You have full control over your Splunk Enterprise configuration, but have limited control over your Splunk Cloud stack.  Some changes must be made by Splunk Support, while other changes cannot be done at all.

I'm sure I'm forgetting some things, but I hope you get the idea.

For more information, see https://docs.splunk.com/Documentation/SplunkCloud/9.0.2303/Admin/Intro

Splunk offers a class for Splunk Cloud admins.  See https://education.splunk.com/catalog?category=splunk-cloud-administration&_ga=2.91430044.745781403.1.....

---
If this reply helps you, Karma would be appreciated.

View solution in original post

0 Karma

richgalloway
SplunkTrust
SplunkTrust

After all that, I realized that you were asking about the certification, not administration.

The two certifications are very similar, but the Splunk Cloud Certified Admin cert focuses on tasks cloud admins can perform and ignores those they cannot (see my previous answer).  For specifics see the Certifications Exam Study Guide at https://www.splunk.com/en_us/resources/splunk-certification-exam-study-guide.html?301=/pdfs/training...

---
If this reply helps you, Karma would be appreciated.

chints0357
Explorer

Thanks, will explore further.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

There are several differences between Splunk Enterprise and Splunk Cloud when it comes to administration.

1) You have no access to the file system/CLI

2) You have no access to the Cluster Manager

3) You have no access to the indexers

4) All admin tasks are performed via a search head UI or by installing an app.

5) All apps must pass vetting before they can be installed.  You will be able to install most(?) apps yourself, but some must be installed by Splunk Support.  Other apps are not supported on Splunk Cloud at all.

6) You have full control over your Splunk Enterprise configuration, but have limited control over your Splunk Cloud stack.  Some changes must be made by Splunk Support, while other changes cannot be done at all.

I'm sure I'm forgetting some things, but I hope you get the idea.

For more information, see https://docs.splunk.com/Documentation/SplunkCloud/9.0.2303/Admin/Intro

Splunk offers a class for Splunk Cloud admins.  See https://education.splunk.com/catalog?category=splunk-cloud-administration&_ga=2.91430044.745781403.1.....

---
If this reply helps you, Karma would be appreciated.
0 Karma

chints0357
Explorer

Yes.

Thanks for the clarifications.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...