Splunk SPLK-1002 Practice Test - Questions Answers, Page 11
List of questions
Related questions
This is what Splunk uses to categorize the data that is being indexed.
A.
sourcetype
B.
index
C.
source
D.
host
This is what Splunk uses to categorize the data that is being indexed.
A.
Host
B.
Sourcetype
C.
Index
D.
Source
By default search results are not returned in ________ order.
A.
Chronological
B.
Reverser chronological
C.
ASCIE
D.
Alphabetical
The stats command will create a _____________ by default.
A.
Table
B.
Report
C.
Pie chart
Which of the following is NOT a stats function:
A.
sum
B.
addtotals
C.
count
D.
avg
If a search returns ____________ it can be viewed as a chart.
A.
timestamps
B.
statistics
C.
events
D.
keywords
In this search, __________ will appear on the y-axis. SEARCH: sourcetype=access_combined status!=200 | chart count over host
A.
status
B.
host
C.
count
The timechart command buckets data in time intervals depending on:
A.
the number of events returned
B.
the selected time range
C.
the type of visualization selected
Which of these search strings is NOT valid:
A.
index=web status=50* | chart count over host, status
B.
index=web status=50* | chart count over host by status
C.
index=web status=50* | chart count by host, status
Question