ExamHelpDesk

Complete list of current Q & A>>

Splunk Core Certified User (SPLK-1001) – Quiz

1 / 15

Category: Splunk Core Certified User (SPLK-1001)

When looking at a dashboard panel that is based on a report, which of the following is true?

2 / 15

Category: Splunk Core Certified User (SPLK-1001)

Which of the following is a Splunk search best practice?

3 / 15

Category: Splunk Core Certified User (SPLK-1001)

How can search results be kept longer than 7 days?

4 / 15

Category: Splunk Core Certified User (SPLK-1001)

Which of the following represents the Splunk recommended naming convention for dashboards?

5 / 15

Category: Splunk Core Certified User (SPLK-1001)

When running searches, command modifiers in the search string are displayed in what color?

6 / 15

Category: Splunk Core Certified User (SPLK-1001)

When editing a dashboard, which of the following are possible options? (Choose all that apply.)

7 / 15

Category: Splunk Core Certified User (SPLK-1001)

Which of the following constraints can be used with the top command?

8 / 15

Category: Splunk Core Certified User (SPLK-1001)

Select the answer that displays the accurate placing of the pipe in the following search string: index=security sourcetype=access_* status=200 stats count by price

9 / 15

Category: Splunk Core Certified User (SPLK-1001)

Which of the following searches would return events with failure in index netfw or warn or critical in index netops?

10 / 15

Category: Splunk Core Certified User (SPLK-1001)

When writing searches in Splunk, which of the following is true about Booleans?

11 / 15

Category: Splunk Core Certified User (SPLK-1001)

Which search string only returns events from hostWWW3?

12 / 15

Category: Splunk Core Certified User (SPLK-1001)

By default, how long does Splunk retain a search job?

13 / 15

Category: Splunk Core Certified User (SPLK-1001)

What must be done before an automatic lookup can be created? (Choose all that apply.)

14 / 15

Category: Splunk Core Certified User (SPLK-1001)

Which of the following Splunk components typically resides on the machines where data originates?

15 / 15

Category: Splunk Core Certified User (SPLK-1001)

What determines the scope of data that appears in a scheduled report?

Your score is

0%

Scroll to Top