Splunk SPLK-1001 Practice Test - Questions Answers, Page 15
List of questions
Related questions
Which of the following are Splunk premium enhanced solutions? (Choose three.)
A.
Splunk User Behavior Analytics (UBA)
B.
Splunk IT Service Intelligence (ITSI)
C.
Splunk Enterprise Security (ES)
D.
Splunk Analytics Security (AS)
Fields are searchable name and value pairings that differentiates one event from another.
A.
False
B.
True
Splunk extracts fields from event data at index time and at search time.
A.
True
B.
False
______________ is the default web port used by Splunk.
A.
8089
B.
8000
C.
8080
D.
443
Which of the following statements are correct about Search & Reporting App? (Choose three.)
A.
Can be accessed by Apps > Search & Reporting.
B.
Provides default interface for searching and analyzing logs.
C.
Enables the user to create knowledge object, reports, alerts and dashboards.
D.
It only gives us search functionality.
Monitor option in Add Data provides _______________.
A.
Only continuous monitoring.
B.
Only One-time monitoring.
C.
None of the above.
D.
Both One-time and continuous monitoring
Forward Option gather and forward data to indexers over a receiving port from remote machines.
A.
False
B.
True
Question