ExamGecko
Question list
Search
Search

Question 21 - SPLK-1001 discussion

Report
Export

What must be done in order to use a lookup table in Splunk?

A.
The lookup must be configured to run automatically.
Answers
A.
The lookup must be configured to run automatically.
B.
The contents of the lookup file must be copied and pasted into the search bar.
Answers
B.
The contents of the lookup file must be copied and pasted into the search bar.
C.
The lookup file must be uploaded to Splunk and a lookup definition must be created.
Answers
C.
The lookup file must be uploaded to Splunk and a lookup definition must be created.
D.
The lookup file must be uploaded to the etc/apps/lookups folder for automatic ingestion.
Answers
D.
The lookup file must be uploaded to the etc/apps/lookups folder for automatic ingestion.
Suggested answer: C
asked 23/09/2024
Ola Magnus Sundlisæter
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first