Q1. All components are installed and administered in Splunk Enterprise on-premise.
A.True
B. False
Correct Answer: A
Q2. Following are the time selection option while making search: (Choose all that apply.)
A.Date & Time Range
B. Advanced
C. Date Range
D. Presets
E. Relative
Correct Answer: B
Q3. A collection of items containing things such as data inputs, UI elements, and knowledge objects is known as what?
A.An app
B. JSON
C. A role
D. An enhanced solution
Correct Answer: A
Q4. Which search will return the 15 least common field values for the dest_ip field?
A.sourcetype=firewall | rare num=15 dest_ip
B. sourcetype=firewall | rare last=15 dest_ip
C. sourcetype=firewall | rare count=15 dest_ip
D. sourcetype=firewall | rare limit=15 dest_ip
Correct Answer: C
Q5. Machine data can be in structured and unstructured format.
A.False
B. True
Correct Answer: B
$ 39
Reviews
There are no reviews yet.