Which setting is used in indexes.conf to specify alternate locations for accelerated storage?
Which of the following are the default ports that must be configured for Splunk Enterprise Security to function?
When using distributed configuration management to create the Splunk_TA_ForIndexers package, which three files can be included?
When ES content is exported, an app with a .spl extension is automatically created. What is the best practice when exporting and importing updates to ES content?
Which of the following features can the Add-on Builder configure in a new add-on?
Which of the following steps will make the Threat Activity dashboard the default landing page in ES?
Which of the following are data models used by ES? (Choose all that apply)
An administrator is provisioning one search head prior to installing ES. What are the reference minimum requirements for OS, CPU, and RAM for that machine?
Which of the following is a risk of using the Auto Deployment feature of Distributed Configuration Management to distribute indexes.conf?
Analysts have requested the ability to capture and analyze network traffic data. The administrator has researched the documentation and, based on this research, has decided to integrate the Splunk App for Stream with ES.
Which dashboards will now be supported so analysts can view and analyze network Stream data?
Both “Recommended Actions†and “Adaptive Response Actions†use adaptive response. How do they differ?