How does Splunk determine which fields to extract from data?

How does Splunk determine which fields to extract from data?
A . Splunk only extracts the most interesting data from the last 24 hours.
B . Splunk only extracts fields users have manually specified in their data.
C . Splunk automatically extracts any fields that generate interesting visualizations.
D . Splunk automatically discovers many fields based on sourcetype and key/value pairs found in the data.

Answer: D

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments