Splunk Core Certified Power User Exam SPLK-1002 Question # 80 Topic 9 Discussion
SPLK-1002 Exam Topic 9 Question 80 Discussion:
Question #: 80
Topic #: 9
Consider the following search:
Index=web sourcetype=access_combined
The log shows several events that share the same JSESSIONID value (SD404K289O2F151). View the events as a group. From the following list, which search groups events by JSESSIONID?
A.
index=web sourcetype=access_combined SD404K289O2F151 I table JSESSIONID
B.
index=web sourcetype=access_combined JSESSIONID
C.
index=web sourcetype=access_combined I highlight JSESSIONID I search SD404K289O2F151
D.
index-web sourcetype=access_combined I transaction JSESSIONID I search SD404K289O2F151
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit