ExamGecko
Question list
Search
Search

Question 98 - SPLK-1003 discussion

Report
Export

A log file contains 193 days worth of timestamped events. Which monitor stanza would be used to collect data 45 days old and newer from that log file?

A.
followTail = -45d
Answers
A.
followTail = -45d
B.
ignore = 45d
Answers
B.
ignore = 45d
C.
includeNewerThan = -35d
Answers
C.
includeNewerThan = -35d
D.
ignoreOlderThan = 45d
Answers
D.
ignoreOlderThan = 45d
Suggested answer: D

Explanation:

Reference:

https://docs.splunk.com/Documentation/Splunk/8.2.1/Data/Configuretimestamprecognition

asked 23/09/2024
John Bascara
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first