Splunk Tech Talks
Deep-dives for technical practitioners.

Tips & Tricks When Using Ingest Actions

WhitneySink
Splunk Employee
Splunk Employee

Ready to level up your skills with Ingest Actions? It’s not just about filtering, masking, and routing data - using Ingest Actions enables you to optimize costs and achieve greater efficiencies in data transformation.

Learn about:

  • Large scale architecture when using Ingest Actions
  • RegEx performance considerations without shooting yourself in the foot
  • Leverage Ingest Actions when you don’t want to spend a ton of compute resources on screening every single event in a stream
  • Popular ways to use eval in your rulesets
  • Learn about the latest features added since launch
Tags (1)
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...