ExamGecko
Home / Splunk / SPLK-3001 / List of questions
Ask Question

Splunk SPLK-3001 Practice Test - Questions Answers, Page 5

Question list
Search

Question 41

Report
Export
Collapse

If a username does not match the ‘identity’ column in the identities list, which column is checked next?

Email.
Email.
Nickname
Nickname
IP address.
IP address.
Combination of Last Name, First Name.
Combination of Last Name, First Name.
Suggested answer: A
asked 23/09/2024
Robert Thompson
32 questions

Question 42

Report
Export
Collapse

Which of the following features can the Add-on Builder configure in a new add-on?

Expire data.
Expire data.
Normalize data.
Normalize data.
Summarize data.
Summarize data.
Translate data.
Translate data.
Suggested answer: B

Explanation:

Reference: https://docs.splunk.com/Documentation/AddonBuilder/3.0.1/UserGuide/Overview

asked 23/09/2024
Wislon Pereira
36 questions

Question 43

Report
Export
Collapse

What is the maximum recommended volume of indexing per day, per indexer, for a non-cloud (onprem) ES deployment?

50 GB
50 GB
100 GB
100 GB
300 GB
300 GB
500 MB
500 MB
Suggested answer: B

Explanation:

Reference: https://docs.splunk.com/Documentation/ITSI/4.4.2/Install/Plan

asked 23/09/2024
Fabrizio Leo
38 questions

Question 44

Report
Export
Collapse

ES needs to be installed on a search head with which of the following options?

No other apps.
No other apps.
Any other apps installed.
Any other apps installed.
All apps removed except for TA-*.
All apps removed except for TA-*.
Only default built-in and CIM-compliant apps.
Only default built-in and CIM-compliant apps.
Suggested answer: D

Explanation:

Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Install/InstallEnterpriseSecurity

asked 23/09/2024
Paul Macinic
30 questions

Question 45

Report
Export
Collapse

Which settings indicated that the correlation search will be executed as new events are indexed?

Always-On
Always-On
Real-Time
Real-Time
Scheduled
Scheduled
Continuous
Continuous
Suggested answer: C

Explanation:

Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Admin/Configurecorrelationsearches

asked 23/09/2024
Patrick Duglay Piceda
34 questions

Question 46

Report
Export
Collapse

Where are attachments to investigations stored?

KV Store
KV Store
notable index
notable index
attachments.csv lookup
attachments.csv lookup
<splunk_home>/etc/apps/SA-Investigations/default/ui/views/attachments
<splunk_home>/etc/apps/SA-Investigations/default/ui/views/attachments
Suggested answer: A

Explanation:

Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Admin/Manageinvestigations

asked 23/09/2024
Hairul Isman Abdul Gaffar
38 questions

Question 47

Report
Export
Collapse

Which data model populated the panels on the Risk Analysis dashboard?

Risk
Risk
Audit
Audit
Domain analysis
Domain analysis
Threat intelligence
Threat intelligence
Suggested answer: A

Explanation:

Reference: https://docs.splunk.com/Documentation/ES/6.1.0/User/RiskAnalysis#Dashboard_panels

asked 23/09/2024
Zahid Maqsood
44 questions

Question 48

Report
Export
Collapse

How is it possible to navigate to the ES graphical Navigation Bar editor?

Configure -> Navigation Menu
Configure -> Navigation Menu
Configure -> General -> Navigation
Configure -> General -> Navigation
Settings -> User Interface -> Navigation -> Click on “Enterprise Security”
Settings -> User Interface -> Navigation -> Click on “Enterprise Security”
Settings -> User Interface -> Navigation Menus -> Click on “default” next to SplunkEnterpriseSecuritySuite
Settings -> User Interface -> Navigation Menus -> Click on “default” next to SplunkEnterpriseSecuritySuite
Suggested answer: B

Explanation:

Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Admin/

Customizemenubar#Restore_the_default_navigation

asked 23/09/2024
MARTIN WEAVER
35 questions

Question 49

Report
Export
Collapse

An administrator is provisioning one search head prior to installing ES. What are the reference minimum requirements for OS, CPU, and RAM for that machine?

OS: 32 bit, RAM: 16 MB, CPU: 12 cores
OS: 32 bit, RAM: 16 MB, CPU: 12 cores
OS: 64 bit, RAM: 32 MB, CPU: 12 cores
OS: 64 bit, RAM: 32 MB, CPU: 12 cores
OS: 64 bit, RAM: 12 MB, CPU: 16 cores
OS: 64 bit, RAM: 12 MB, CPU: 16 cores
OS: 64 bit, RAM: 32 MB, CPU: 16 cores
OS: 64 bit, RAM: 32 MB, CPU: 16 cores
Suggested answer: C

Explanation:

Reference: https://docs.splunk.com/Documentation/Splunk/8.0.2/Capacity/Referencehardware

asked 23/09/2024
Charles Marlin
36 questions

Question 50

Report
Export
Collapse

What tools does the Risk Analysis dashboard provide?

High risk threats.
High risk threats.
Notable event domains displayed by risk score.
Notable event domains displayed by risk score.
A display of the highest risk assets and identities.
A display of the highest risk assets and identities.
Key indicators showing the highest probability correlation searches in the environment.
Key indicators showing the highest probability correlation searches in the environment.
Suggested answer: C

Explanation:

Reference: https://docs.splunk.com/Documentation/ES/6.1.0/User/RiskAnalysis

asked 23/09/2024
Nito Nobel
44 questions
Total 99 questions
Go to page: of 10