Which configuration file parameter can be used to modify line termination settings interactively, using the Set Source Type page in Splunk Web?
- A . LINE_BREAKER
- B . SHOULD_LINEMERGE
- C . BREAK_ONLY_BEFORE
- D . TRUNCATE
What is the name of the process that breaks the stream of raw data into individual lines called events?
- A . Line breaking
- B . Event annotation
- C . Event transformation
- D . Timestamp extraction
What is the name of the configuration file where you can specify the source type for a data input?
- A . limits.conf
- B . props.conf
- C . inputs.conf
- D . transforms.conf
What is the name of the Splunk Cloud feature that allows you to get data from APIs and other remote data interfaces through scripted inputs?
- A . Splunk Cloud Data Connectors
- B . Splunk Cloud Data Integrations
- C . Splunk Cloud Data Collectors
- D . Splunk Cloud Data Sources
Which configuration file needs to be edited to enable local indexing on the forwarder?
- A . outputs.conf
- B . inputs.conf
- C . props.conf
- D . transforms.conf
What is the name of the default field that stores the timestamps in UNIX time when data is indexed?
- A . _time
- B . _timestamp
- C . _date
- D . _epoch
What is the name of the tab in Splunk Web where you can set the indexes that a role can access?
- A . Inheritance
- B . Capabilities
- C . Indexes
- D . Restrictions
Which feature of forwarders can prevent data loss in case of network failure or congestion?
- A . Data compression
- B . SSL security
- C . Configurable buffering
- D . Persistent queues
Which type of forwarder can act as an intermediate forwarder to receive data from other forwarders and send it to the indexer?
- A . Universal forwarder
- B . Heavy forwarder
- C . Light forwarder
- D . Any type of forwarder
Which type of forwarder can perform data parsing and enrichment before sending it to the indexer?
- A . Universal forwarder
- B . Heavy forwarder
- C . Deployment server
- D . Search head
Which setting in inputs.conf can be used to specify the SSL certificate for a TCP or UDP input?
- A . sslCertPath
- B . sslRootCAPath
- C . sslPassword
- D . All of the above
What is the name of the component that acts as a data manager and sends data to Splunk Cloud Platform indexers?
- A . Heavy forwarder
- B . Universal forwarder
- C . Deployment server
- D . License master
Which file processor can be used to index files that are not actively written to or updated?
- A . Monitor
- B . MonitornoHandle
- C . Upload
- D . None of the above
Which type of forwarder is a full Splunk Enterprise instance that can run apps and add-ons?
- A . Universal forwarder
- B . Heavy forwarder
- C . Deployment server
- D . Search head
Which configuration file needs to be edited to configure the universal forwarder to act as a deployment client?
- A . deploymentclient.conf
- B . server.conf
- C . outputs.conf
- D . inputs.conf
Which command can be used to install a universal forwarder on a Linux system?
- A . splunk install forwarder
- B . splunk forwarder install
- C . splunk add forward-server
- D . splunk enable boot-start
Which setting in inputs.conf can be used to specify the command to run the script for a scripted input?
- A . script
- B . command
- C . exec
- D . run
What is the main advantage of self-service Splunk Cloud over managed Splunk Cloud in terms of cost and control?
- A . Self-service Splunk Cloud costs more to get started and maintain but allows your organization total control in setup and security configurations.
- B . Self-service Splunk Cloud costs less to get started and maintain and allows your organization total control in setup and security configurations.
- C . Self-service Splunk Cloud costs more to get started and maintain and requires your organization to rely on Splunk for setup and security configurations.
- D . Self-service Splunk Cloud costs less to get started and maintain but requires your organization to rely on Splunk for setup and security configurations.
Which option in Splunk web can be used to access the Guided Data On-boarding feature?
- A . Add data
- B . Data inputs
- C . Data summary
- D . Data models
Which Windows-specific input type allows Splunk software to read special Windows log files such as the DNS debug server log?
- A . MonitorNoHandle
- B . Windows Event Log
- C . Windows Registry
- D . Windows Management Instrumentation (WMI)
What is the name of the dashboard that provides information on incoming data consumption and indexing rate for your Splunk Cloud Platform deployment?
- A . Indexing Performance
- B . Indexing Quality
- C . Indexing Status
- D . Indexing Overview
Which configuration file determines how a universal forwarder forwards data to the indexer?
- A . inputs.conf
- B . outputs.conf
- C . props.conf
- D . transforms.conf
What is the name of the attribute that specifies the sed script for data transformation in the props.conf file?
- A . SEDCMD
- B . FORMAT
- C . DEST_KEY
- D . TRANSFORMS
Which setting in inputs.conf can be used to specify the interval at which the script runs for a scripted input?
- A . interval
- B . frequency
- C . schedule
- D . cron
Which Splunk add-on simplifies the process of getting data into Splunk Cloud Platform from Windows Event Log channels?
- A . Splunk Add-on for Windows
- B . Splunk Add-on for Infrastructure
- C . Splunk Add-on for Active Directory
- D . Splunk Add-on for DNS