What syntax is used to link key/value pairs in search strings?
What syntax is used to link key/value pairs in search strings?A . action+purchaseB . action=purchaseC . action | purchaseD . action equal purchaseView AnswerAnswer: B
What is the main requirement for creating visualizations using the Splunk UI?
What is the main requirement for creating visualizations using the Splunk UI?A . Your search must transform event data into Excel file format first.B . Your search must transform event data into XML formatted data first.C . Your search must transform event data into statistical data tables first.D . Your...
What are the steps to schedule a report?
What are the steps to schedule a report?A . After saving the report, click Schedule.B . After saving the report, click Event Type.C . After saving the report, click Scheduling.D . After saving the report, click Dashboard Panel.View AnswerAnswer: A
Which is one of the directories Splunk will look in to find the script?
When an alert action is configured to run a script, Splunk must be able to locate the script. Which is one of the directories Splunk will look in to find the script?A . $SPLUNK_HOME/bin/scriptsB . $SPLUNK_HOME/etc/scriptsC . $SPLUNK_HOME/bin/etc/scriptsD . $SPLUNK_HOME/etc/scripts/binView AnswerAnswer: A
What does the stats command do?
What does the stats command do?A . Automatically correlates related fieldsB . Converts field values into numerical valuesC . Calculates statistics on data that matches the search criteriaD . Analyzes numerical fields for their ability to predict another discrete fieldView AnswerAnswer: C
By default, which of the following fields would be listed in the fields sidebar under interesting Fields?
By default, which of the following fields would be listed in the fields sidebar under interesting Fields?A . hostB . indexC . sourceD . sourcetypeView AnswerAnswer: D Explanation: The fields sidebar in Splunk shows the default fields and the interesting fields for the events that match your search. The default...
In automatic lookup definitions, the _____ fields are those that are not in the event data.
In automatic lookup definitions, the _____ fields are those that are not in the event data.A . inputB . outputView AnswerAnswer: B
Define the lookup
Define the lookupA . 2,1,3B . 1,2,3C . 2,3,1D . 3,2,1View AnswerAnswer: C
Which stats command function provides a count of how many unique values exist for a given field in the result set?
Which stats command function provides a count of how many unique values exist for a given field in the result set?A . dc(field)B . count(field)C . count-by(field)D . distinct-count(field)View AnswerAnswer: A
By default search results are not returned in ________ order.
By default search results are not returned in ________ order.A . ChronologicalB . Reverser chronologicalC . ASCIED . AlphabeticalView AnswerAnswer: A, D