Which of the following statements describe licensing in a clustered Splunk deployment? (Select all that apply.)
A search head cluster with a KV store collection can be updated from where in the KV store collection?
What log file would you search to verify if you suspect there is a problem interpreting a regular expression in a monitor stanza?
Which of the following security options must be explicitly configured (i.e. which options are not enabled by default)?
How does the average run time of all searches relate to the available CPU cores on the indexers?
A Splunk instance has crashed, but no crash log was generated. There is an attempt to determine what user activity caused the crash by running the following search:
What does searching for closed_txn=0 do in this search?
Several critical searches that were functioning correctly yesterday are not finding a lookup table today. Which log file would be the best place to start troubleshooting?