Podcast
Questions and Answers
Which search string returns events only from hostWWW3?
Which search string returns events only from hostWWW3?
By default, how long does Splunk retain a search job?
By default, how long does Splunk retain a search job?
What is required before an automatic lookup can be created? (Choose all that apply.)
What is required before an automatic lookup can be created? (Choose all that apply.)
Which of the following Splunk components typically resides on the machines where data originates?
Which of the following Splunk components typically resides on the machines where data originates?
Signup and view all the answers
What is the purpose of regularly scheduled archiving in Splunk?
What is the purpose of regularly scheduled archiving in Splunk?
Signup and view all the answers
After running a search in Splunk, what effect does clicking and dragging across the timeline have?
After running a search in Splunk, what effect does clicking and dragging across the timeline have?
Signup and view all the answers
Which command is used to review the contents of a specified static lookup file in Splunk?
Which command is used to review the contents of a specified static lookup file in Splunk?
Signup and view all the answers
In order to use a lookup table in Splunk, what must be done?
In order to use a lookup table in Splunk, what must be done?
Signup and view all the answers
When sorting on multiple fields with the sort command in Splunk, what delimiter can be used between the field names in the search?
When sorting on multiple fields with the sort command in Splunk, what delimiter can be used between the field names in the search?
Signup and view all the answers
Which time range picker configuration in Splunk would return real-time events for the past 30 seconds?
Which time range picker configuration in Splunk would return real-time events for the past 30 seconds?
Signup and view all the answers
When writing searches in Splunk, which of the following is true about Booleans?
When writing searches in Splunk, which of the following is true about Booleans?
Signup and view all the answers
Which of the following searches would return events with failure in index netfw or warn or critical in index netops?
Which of the following searches would return events with failure in index netfw or warn or critical in index netops?
Signup and view all the answers
Select the answer that displays the accurate placing of the pipe in the following search string: index=security sourcetype=access_* status=200 stats count by price
Select the answer that displays the accurate placing of the pipe in the following search string: index=security sourcetype=access_* status=200 stats count by price
Signup and view all the answers
Which of the following constraints can be used with the top command?
Which of the following constraints can be used with the top command?
Signup and view all the answers
When editing a dashboard, which of the following are possible options? (Choose all that apply.)
When editing a dashboard, which of the following are possible options? (Choose all that apply.)
Signup and view all the answers
When running searches, command modifiers in the search string are displayed in what color?
When running searches, command modifiers in the search string are displayed in what color?
Signup and view all the answers
Which of the following represents the Splunk recommended naming convention for dashboards?
Which of the following represents the Splunk recommended naming convention for dashboards?
Signup and view all the answers
How can search results be kept longer than 7 days?
How can search results be kept longer than 7 days?
Signup and view all the answers
Which of the following is a Splunk search best practice?
Which of the following is a Splunk search best practice?
Signup and view all the answers