Splunk SPLK-2002 Practice Test - Questions Answers, Page 4
List of questions
Related questions
To activate replication for an index in an indexer cluster, what attribute must be configured in indexes.conf on all peer nodes?
repFactor = 0
replicate = 0
repFactor = auto
replicate = auto
Which of the following clarification steps should be taken if apps are not appearing on a deployment client? (Select all that apply.)
Check serverclass.conf of the deployment server.
Check deploymentclient.conf of the deployment client.
Check the content of SPLUNK_HOME/etc/apps of the deployment server.
Search for relevant events in splunkd.log of the deployment server.
What is the minimum reference server specification for a Splunk indexer?
12 CPU cores, 12GB RAM, 800 IOPS
16 CPU cores, 16GB RAM, 800 IOPS
24 CPU cores, 16GB RAM, 1200 IOPS
28 CPU cores, 32GB RAM, 1200 IOPS
Which of the following security options must be explicitly configured (i.e. which options are not enabled by default)?
Data encryption between Splunk Web and splunkd.
Certificate authentication between forwarders and indexers.
Certificate authentication between Splunk Web and search head.
Data encryption for distributed search between search heads and indexers.
Which of the following artifacts are included in a Splunk diag file? (Select all that apply.)
OS settings.
Internal logs.
Customer data.
Configuration files.
Which command will permanently decommission a peer node operating in an indexer cluster?
splunk stop -f
splunk offline -f
splunk offline --enforce-counts
splunk decommission --enforce counts
Which CLI command converts a Splunk instance to a license slave?
splunk add licenses
splunk list licenser-slaves
splunk edit licenser-localslave
splunk list licenser-localslave
Splunk Enterprise platform instrumentation refers to data that the Splunk Enterprise deployment logs in the _introspection index. Which of the following logs are included in this index? (Select all that apply.)
audit.log
metrics.log
disk_objects.log
resource_usage.log
Which of the following can a Splunk diag contain?
Search history, Splunk users and their roles, running processes, indexed data
Server specs, current open connections, internal Splunk log files, index listings
KV store listings, internal Splunk log files, search peer bundles listings, indexed data
Splunk platform configuration details, Splunk users and their roles, current open connections, index listings
Which of the following are true statements about Splunk indexer clustering?
All peer nodes must run exactly the same Splunk version.
The master node must run the same or a later Splunk version than search heads.
The peer nodes must run the same or a later Splunk version than the master node.
The search head must run the same or a later Splunk version than the peer nodes.
Question