New Year Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

SPLK-1001 Exam Dumps - Splunk Core Certified User

Go to page:
Question # 17

Which is a primary function of the timeline located under the search bar?

A.

To differentiate between structured and unstructured events in the data

B.

To sort the events returned by the search command in chronological order

C.

To zoom in and zoom out. although this does not change the scale of the chart

D.

To show peaks and/or valleys in the timeline, which can indicate spikes in activity or downtime

Full Access
Question # 18

Universal forwarder is recommended for forwarding the logs to indexers.

A.

False

B.

True

Full Access
Question # 19

______________ is the default web port used by Splunk.

A.

8089

B.

8000

C.

8080

D.

443

Full Access
Question # 20

How many minutes, by default, is the time to live (ttl) for an ad-hoc search job?

A.

5 minutes

B.

1 minute

C.

10 minutes

D.

60 minutes

Full Access
Question # 21

Which of the following statements describes a search job?

A.

Once a search job begins, it cannot be stopped

B.

A search job can only be paused when less than 50% of events are returned

C.

A search job can only be stopped when less than 50% of events are returned

D.

Once a search job begins, it can be stopped or paused at any point in time

Full Access
Question # 22

Given the following SPL search, how many rows of results would you expect to be returned by default? index=security sourcetype=linux_secure (fail* OR invalid) I top src__ip

A.

10

B.

50

C.

100

D.

20

Full Access
Question # 23

When viewing the results of a search, what is an Interesting Field?

A.

A field that appears in any event

B.

A field that appears in every event

C.

A field that appears in the top 10 events

D.

A field that appears in at least 20% of the events

Full Access
Question # 24

What does the rare command do?

A.

Returns the least common field values of a given field in the results.

B.

Returns the most common field values of a given field in the results.

C.

Returns the top 10 field values of a given field in the results.

D.

Returns the lowest 10 field values of a given field in the results.

Full Access
Go to page: