Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Splunk Core Certified Power User Exam SPLK-1002 Question # 62 Topic 7 Discussion

Splunk Core Certified Power User Exam SPLK-1002 Question # 62 Topic 7 Discussion

SPLK-1002 Exam Topic 7 Question 62 Discussion:
Question #: 62
Topic #: 7

Which SPL query will group results that occur within 15 seconds of each other by user and host?


A.

index=firewall | transaction user host span=15s


B.

index=firewall | stats count by _time host user maxspan=15s


C.

index=firewall | stats count by _time host user span=15s


D.

index=firewall | transaction user host maxspan=15s


Get Premium SPLK-1002 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.