Splunk SPLK-1002 Practice Test - Questions Answers, Page 12
List of questions
Related questions
Which command is used to create choropleth maps?
A.
geostats
B.
cluster
C.
geom
which of the following are valid options with the chart command
A.
useother
B.
usenull
C.
fillfield
D.
usefiled
The gauge command:
A.
creates a single-value visualization
B.
allows you to set colored ranges for a single-value visualization
C.
creates a radial gauge visualization
What will you learn from the results of the following search?
sourcetype=cisco_esa | transaction mid, dcid, icid | timechart avg(duration)
A.
The average time elapsed during each transaction for all transactions
B.
The average time for each event within each transaction
C.
The average time between each transaction
Which of these is NOT a field that is automatically created with the transaction command?
A.
maxcount
B.
duration
C.
eventcount
How many ways are there to access the Field Extractor Utility?
A.
3
B.
4
C.
1
D.
5
When extracting fields, we may choose to use our own regular expressions
A.
True
B.
False
Field aliases are used to __________ data
A.
clean
B.
transform
C.
calculate
D.
normalize
Complete the search, .... | _____ failure>successes
A.
Search
B.
Where
C.
If
D.
Any of the above
These kinds of charts represent a series in a single bar with multiple sections
A.
Multi-Series
B.
Split-Series
C.
Omit nulls
D.
Stacked
Question