ExamGecko
Home Home / Splunk / SPLK-1001

Splunk SPLK-1001 Practice Test - Questions Answers, Page 15

Question list
Search
Search

Which of the following are Splunk premium enhanced solutions? (Choose three.)

A.
Splunk User Behavior Analytics (UBA)
A.
Splunk User Behavior Analytics (UBA)
Answers
B.
Splunk IT Service Intelligence (ITSI)
B.
Splunk IT Service Intelligence (ITSI)
Answers
C.
Splunk Enterprise Security (ES)
C.
Splunk Enterprise Security (ES)
Answers
D.
Splunk Analytics Security (AS)
D.
Splunk Analytics Security (AS)
Answers
Suggested answer: A, B, C

Fields are searchable name and value pairings that differentiates one event from another.

A.
False
A.
False
Answers
B.
True
B.
True
Answers
Suggested answer: B

Splunk extracts fields from event data at index time and at search time.

A.
True
A.
True
Answers
B.
False
B.
False
Answers
Suggested answer: A

Explanation:

Reference:

https://docs.splunk.com/Documentation/Splunk/7.2.3/SearchTutorial/Usefieldstosearch

Explanation:

Field values are case sensitive.

A.
True
A.
True
Answers
B.
False
B.
False
Answers
Suggested answer: B

Splunk indexes the data on the basis of timestamps.

A.
True
A.
True
Answers
B.
False
B.
False
Answers
Suggested answer: A

______________ is the default web port used by Splunk.

A.
8089
A.
8089
Answers
B.
8000
B.
8000
Answers
C.
8080
C.
8080
Answers
D.
443
D.
443
Answers
Suggested answer: B

Which of the following statements are correct about Search & Reporting App? (Choose three.)

A.
Can be accessed by Apps > Search & Reporting.
A.
Can be accessed by Apps > Search & Reporting.
Answers
B.
Provides default interface for searching and analyzing logs.
B.
Provides default interface for searching and analyzing logs.
Answers
C.
Enables the user to create knowledge object, reports, alerts and dashboards.
C.
Enables the user to create knowledge object, reports, alerts and dashboards.
Answers
D.
It only gives us search functionality.
D.
It only gives us search functionality.
Answers
Suggested answer: A, B, C

Parsing of data can happen both in HF and Indexer.

A.
Only HF
A.
Only HF
Answers
B.
No
B.
No
Answers
C.
Yes
C.
Yes
Answers
Suggested answer: C

Monitor option in Add Data provides _______________.

A.
Only continuous monitoring.
A.
Only continuous monitoring.
Answers
B.
Only One-time monitoring.
B.
Only One-time monitoring.
Answers
C.
None of the above.
C.
None of the above.
Answers
D.
Both One-time and continuous monitoring
D.
Both One-time and continuous monitoring
Answers
Suggested answer: D

Forward Option gather and forward data to indexers over a receiving port from remote machines.

A.
False
A.
False
Answers
B.
True
B.
True
Answers
Suggested answer: B
Total 246 questions
Go to page: of 25