Exam 1: Splunk Core Certified User

arrow
  • Select Tags
search iconSearch Question
flashcardsStudy Flashcards
  • Select Tags

Which of the following is a best practice when writing a search string?

(Multiple Choice)
4.8/5
(32)

When an alert action is configured to run a script, Splunk must be able to locate the script. Which is one of the directories Splunk will look in to find the script?

(Multiple Choice)
4.7/5
(39)

What is one benefit of creating dashboard panels from reports?

(Multiple Choice)
4.8/5
(29)

What is a quick, comprehensive way to learn what data is present in a Splunk deployment?

(Multiple Choice)
4.9/5
(35)

What kind of logs can Splunk Index?

(Multiple Choice)
4.8/5
(39)

When sorting on multiple fields with the sort command, what delimiter can be used between the field names in the search?

(Multiple Choice)
4.7/5
(44)

When a Splunk search generates calculated data that appears in the Statistics tab, in what formats can the results be exported?

(Multiple Choice)
4.8/5
(33)

Machine data can be in structured and unstructured format.

(True/False)
5.0/5
(36)

Keywords are highlighted when you mouse over search results and you can click this search result to (Choose three.):

(Multiple Choice)
4.8/5
(30)

Beginning parentheses is automatically highlighted to guide you on the presence of complimenting parentheses.

(Multiple Choice)
4.8/5
(36)

Which of the following is an option after clicking an item in search results?

(Multiple Choice)
4.8/5
(38)

When viewing the results of a search, what is an Interesting Field?

(Multiple Choice)
4.8/5
(34)

What is Search Assistant in Splunk?

(Multiple Choice)
4.7/5
(43)

Where does Licensing meter happen?

(Multiple Choice)
5.0/5
(37)

How can search results be kept longer than 7 days?

(Multiple Choice)
4.9/5
(39)

You are able to create new Index in Data Input settings.

(Multiple Choice)
4.8/5
(30)

In the Search and Reporting app, which tab displays timecharts and bar charts?

(Multiple Choice)
4.9/5
(42)

The default host name used in Inputs general settings can not be changed.

(True/False)
4.8/5
(38)

Which of the following statements describes a search job?

(Multiple Choice)
4.8/5
(30)

Search Assistant is enabled by default in the SPL editor with compact settings.

(Multiple Choice)
4.7/5
(45)
Showing 121 - 140 of 187
close modal

Filters

  • Essay(0)
  • Multiple Choice(0)
  • Short Answer(0)
  • True False(0)
  • Matching(0)