When using the top command in the following search, which of the following will be true about the results?
index="main" sourcetype="access_*" action="purchase" | top 3 statusCode by user showperc=f countfield=status_code_count
Which of the following searches would return events with failure in index netfw or warn or critical in index netops?
Keywords are highlighted when you mouse over search results and you can click this search result to (Choose three.):
Which Boolean operator is implied between search terms, unless otherwise specified?