Splunk Core Certified Power User Exam SPLK-1002 Question # 80 Topic 9 Discussion

Splunk Core Certified Power User Exam SPLK-1002 Question # 80 Topic 9 Discussion

SPLK-1002 Exam Topic 9 Question 80 Discussion:
Question #: 80
Topic #: 9

Consider the following search:

Index=web sourcetype=access_combined

The log shows several events that share the same JSESSIONID value (SD404K289O2F151). View the events as a group. From the following list, which search groups events by JSESSIONID?


A.

index=web sourcetype=access_combined SD404K289O2F151 I table JSESSIONID


B.

index=web sourcetype=access_combined JSESSIONID


C.

index=web sourcetype=access_combined I highlight JSESSIONID I search SD404K289O2F151


D.

index-web sourcetype=access_combined I transaction JSESSIONID I search SD404K289O2F151


Get Premium SPLK-1002 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.