Splunk SPLK-1002 Splunk Core Certified Power User Online Training
Splunk SPLK-1002 Online Training
The questions for SPLK-1002 were last updated at Nov 23,2024.
- Exam Code: SPLK-1002
- Exam Name: Splunk Core Certified Power User
- Certification Provider: Splunk
- Latest update: Nov 23,2024
How does a user display a chart in stack mode?
- A . By using the stack command.
- B . By turning on the Use Trellis Layout option.
- C . By changing Stack Mode in the Format menu.
- D . You cannot display a chart in stack mode, only a timechart.
Which of the following statements about event types is true? (select all that apply)
- A . Event types can be tagged.
- B . Event types must include a time range,
- C . Event types categorize events based on a search.
- D . Event types can be a useful method for capturing and sharing knowledge.
In what order arc the following knowledge objects/configurations applied?
- A . Field Aliases, Field Extractions, Lookups
- B . Field Extractions, Field Aliases, Lookups
- C . Field Extractions, Lookups, Field Aliases
- D . Lookups, Field Aliases, Field Extractions
Which of the following knowledge objects represents the output of an eval expression?
- A . Eval fields
- B . Calculated fields
- C . Field extractions
- D . Calculated lookups
A calculated field maybe based on which of the following?
- A . Lookup tables
- B . Extracted fields
- C . Regular expressions
- D . Fields generated within a search string
Which of the following eval command function is valid?
- A . Int ()
- B . Count ( )
- C . Print ()
- D . Tostring ()
Which one of the following statements about the search command is true?
- A . It does not allow the use of wildcards.
- B . It treats field values in a case-sensitive manner.
- C . It can only be used at the beginning of the search pipeline.
- D . It behaves exactly like search strings before the first pipe.
What does the Splunk Common Information Model (CIM) add-on include? (select all that apply)
- A . Custom visualizations
- B . Pre-configured data models
- C . Fields and event category tags
- D . Automatic data model acceleration
Which of the following file formats can be extracted using a delimiter field extraction?
- A . CSV
- B . PDF
- C . XML
- D . JSON
Which of the following statements describes macros?
- A . A macro is a reusable search string that must contain the full search.
- B . A macro is a reusable search string that must have a fixed time range.
- C . A macro Is a reusable search string that may have a flexible time range.
- D . A macro Is a reusable search string that must contain only a portion of the search.