Splunk SPLK-3002 Splunk IT Service Intelligence Certified Admin Exam Online Training
Splunk SPLK-3002 Online Training
The questions for SPLK-3002 were last updated at Nov 19,2024.
- Exam Code: SPLK-3002
- Exam Name: Splunk IT Service Intelligence Certified Admin Exam
- Certification Provider: Splunk
- Latest update: Nov 19,2024
What are valid considerations when designing an ITSI Service? (Choose all that apply.)
- A . Service access control requirements for ITSI Team Access should be considered, and appropriate teams provisioned prior to creating the ITSI Service.
- B . Entities, entity meta-data, and entity rules should be planned carefully to support the service design and configuration.
- C . Services, entities, and saved searches are stored in the ITSI app, while events created by KPI execution are stored in the itsi_summary index.
- D . Backfill of a KPI should always be selected so historical data points can be used immediately and alerts based on that data can occur.
Anomaly detection can be enabled on which one of the following?
- A . KPI
- B . Multi-KPI alert
- C . Entity
- D . Service
Which index is used to store KPI values?
- A . itsi_summary_metrics
- B . itsi_metrics
- C . itsi_service_health
- D . itsi_summary
Where are KPI search results stored?
- A . The default index.
- B . KV Store.
- C . Output to a CSV lookup.
- D . The itsi_summary index.
Which ITSI functions generate notable events? (Choose all that apply.)
- A . KPI threshold breaches.
- B . KPI anomaly detection.
- C . Multi-KPI alert.
- D . Correlation search.