ExamGecko
Question list
Search
Search

List of questions

Search

Question 80 - SPLK-1005 discussion

Report
Export

Given the following set of files, which of the monitor stanzas below will result in Splunk monitoring all of the files ending with .log?

Files:

/var/log/www1/secure.log

/var/log/www1/access.log

/var/log/www2/logs/secure.log

/var/log/www2/access.log

/var/log/www2/access.log.1

A.

[monitor:///var/log/*/*.log]

Answers
A.

[monitor:///var/log/*/*.log]

B.

[monitor:///var/log/.../*.log]

Answers
B.

[monitor:///var/log/.../*.log]

C.

[monitor:///var/log/*/*]

Answers
C.

[monitor:///var/log/*/*]

D.

[monitor:///var/log/.../*]

Answers
D.

[monitor:///var/log/.../*]

Suggested answer: B

Explanation:

The ellipsis (...) in [monitor:///var/log/.../*.log] allows Splunk to monitor files ending in .log in all nested directories under /var/log/. [Reference: Splunk Docs on monitor stanza syntax]

asked 13/11/2024
Kurt Woodfin
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first