These users can create global knowledge objects. (Select all that apply.)
These users can create global knowledge objects. (Select all that apply.)A . usersB . power usersC . administratorsView AnswerAnswer: B, C
In automatic lookup definitions, the _____ fields are those that are not in the event data.
In automatic lookup definitions, the _____ fields are those that are not in the event data.A . inputB . outputView AnswerAnswer: B
Creating Data Models:
Creating Data Models: Fields associated with a data set are known as ______.A . AttributesB . ConstraintsView AnswerAnswer: A
in what formats can the results be exported?
When a Splunk search generates calculated data that appears in the Statistics tab. in what formats can the results be exported?A . CSV, JSON, PDFB . CSV, XML JSONC . Raw Events, XML, JSOND . Raw Events, CSV, XML, JSONView AnswerAnswer: A
By default, how long does Splunk retain a search job?
By default, how long does Splunk retain a search job?A . 10 MinutesB . 15 MinutesC . 1 DayD . 7 DaysView AnswerAnswer: A
Which is not a comparison operator in Splunk
Which is not a comparison operator in SplunkA . <=B . =C . !=D . >E . ?=View AnswerAnswer: E
Which search string matches only events with the status_code of 4:4?
Which search string matches only events with the status_code of 4:4?A . status_code !=404B . status_code>=400C . status_code<=404D . status code>403 status_code<405View AnswerAnswer: D
When a search returns __________, you can view the results as a list.
When a search returns __________, you can view the results as a list.A . a list of eventsB . transactionsC . statistical valuesView AnswerAnswer: C
Which stats command function provides a count of how many unique values exist for a given field in the result set?
Which stats command function provides a count of how many unique values exist for a given field in the result set?A . dc(field)B . count(field)C . count-by(field)D . distinct-count(field)View AnswerAnswer: A
In automatic lookup definitions, the _____ fields are those that are not in the event data.
In automatic lookup definitions, the _____ fields are those that are not in the event data.A . inputB . outputView AnswerAnswer: B