Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Pass the Splunk Splunk Core Certified Power User SPLK-1002 Questions and answers with CertsForce

Viewing page 5 out of 10 pages
Viewing questions 41-50 out of questions
Questions # 41:

Using the Field Extractor (FX) tool, a value is highlighted to extract and give a name to a new field. Splunk has not successfully extracted that value from all appropriate events. What steps can be taken so Splunk successfully extracts the value from all appropriate events? (select all that apply)

Options:

A.

Select an additional sample event with the Field Extractor (FX) and highlight the missing value in the event.


B.

Re-ingest the data and attempt to extract from a new dataset.


C.

Click on the event where the field was not extracted and choose “Change to Delimited".


D.

Edit the regular expression manually.


Expert Solution
Questions # 42:

The Field Extractor (FX) is used to extract a custom field. A report can be created using this custom field. The created report can then be shared with other people in the organization. If another person in the organization runs the shared report and no results are returned, why might this be? (select all that apply)

Options:

A.

Fast mode is enabled.


B.

The dashboard is private.


C.

The extraction is private-


D.

The person in the organization running the report does not have access to the index.


Expert Solution
Questions # 43:

Which of these stats commands will show the total bytes for each unique combination of page and server?

Options:

A.

index=web | stats sum (bytes) BY page BY server


B.

index=web | stats sum (bytes) BY page server


C.

index=web | stats sum(bytes) BY page AND server


D.

index=web | stats sum(bytes) BY values (page) values (server)


Expert Solution
Questions # 44:

Which of the following data model are included In the Splunk Common Information Model (CIM) add-on? (select all that apply)

Options:

A.

Alerts


B.

Email


C.

Database


D.

User permissions


Expert Solution
Questions # 45:

The fields sidebar does not show________. (Select all that apply.)

Options:

A.

interesting fields


B.

selected fields


C.

all extracted fields


Expert Solution
Questions # 46:

Which of the following describes the transaction command?

Options:

A.

It is an SPL command that groups at least two events together based on shared values in selected fields.


B.

It allows an exchange of data from one Splunk system to another Splunk system.


C.

It allows an exchange of data from one Splunk index to another Splunk index.


D.

It is an SPL command that groups events together with shared values in selected fields.


Expert Solution
Questions # 47:

Which of the following statements describes macros?

Options:

A.

A macro is a reusable search string that must contain the full search.


B.

A macro is a reusable search string that must have a fixed time range.


C.

A macro Is a reusable search string that may have a flexible time range.


D.

A macro Is a reusable search string that must contain only a portion of the search.


Expert Solution
Questions # 48:

A POST workflow action will pass which types of arguments to an external website?

Options:

A.

Clear text only.


B.

A mix of clear text strings and variables.


C.

It can only send raw event data.


D.

Variables only.


Expert Solution
Questions # 49:

When would a user select delimited field extractions using the Field Extractor (FX)?

Options:

A.

When a log file has values that are separated by the same character, for example, commas.


B.

When a log file contains empty lines or comments.


C.

With structured files such as JSON or XML.


D.

When the file has a header that might provide information about its structure or format.


Expert Solution
Questions # 50:

which of the following commands are used when creating visualizations(select all that apply.)

Options:

A.

Geom


B.

Choropleth


C.

Geostats


D.

iplocation


Expert Solution
Viewing page 5 out of 10 pages
Viewing questions 41-50 out of questions