ExamGecko
Question list
Search
Search

Question 222 - SPLK-1001 discussion

Report
Export

Which search will return the 15 least common field values for the dest_ip field?

A.
sourcetype=firewall | rare num=15 dest_ip
Answers
A.
sourcetype=firewall | rare num=15 dest_ip
B.
sourcetype=firewall | rare last=15 dest_ip
Answers
B.
sourcetype=firewall | rare last=15 dest_ip
C.
sourcetype=firewall | rare count=15 dest_ip
Answers
C.
sourcetype=firewall | rare count=15 dest_ip
D.
sourcetype=firewall | rare limit=15 dest_ip
Answers
D.
sourcetype=firewall | rare limit=15 dest_ip
Suggested answer: C

Explanation:

Reference:

https://answers.splunk.com/answers/41928/add-a-lookup-csv-colum-information-to-the-results-ofainputlookup-search.html

Explanation:

asked 23/09/2024
Valerio Pietrantoni
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first