Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Pass the Splunk Splunk Core Certified Power User SPLK-1002 Questions and answers with CertsForce

Viewing page 7 out of 10 pages
Viewing questions 61-70 out of questions
Questions # 61:

Which option of the transaction command would be used to specify the maximum time between events in a transaction?

Options:

A.

maxpause


B.

maxspan


C.

duration


D.

 eventcount


Expert Solution
Questions # 62:

Which of the following describes this search?

New Search

'third_party_outages(EMEA,-24h)'

Options:

A.

This search will find all events for the third_party_outages event type that have "EMEA" or "-24h" in the raw event data.


B.

This search will run the third_party_outages saved search and filter for events containing "EMEA" and "-24h" in the raw event data.


C.

This search will run the third_party_outages macro and pass the arguments EMEA and -24h to the macro definition.


D.

This search will find all events in the third_party_outages index with the tags EMEA and -24h.


Expert Solution
Questions # 63:

Which tool uses data models to generate reports and dashboard panels without using SPL?

Options:

A.

Visualization tab


B.

Pivot


C.

Datasets


D.

splunk CIM


Expert Solution
Questions # 64:

If a calculated field has the same name as an extracted field, what happens to the extracted field?

Options:

A.

The calculated field will override the extracted field.


B.

The calculated and extracted fields will be combined.


C.

The calculated field will duplicate the extracted field.


D.

An error will be returned and the search will fail.


Expert Solution
Questions # 65:

Which of the following is true about Pivot?

Options:

A.

Users can save reports from Pivot.


B.

Users cannot share visualizations created with Pivot.


C.

Users must use SPL to find events in a Pivot.


D.

Users cannot create visualizations with Pivot.


Expert Solution
Questions # 66:

Which of the following statements about data models and pivot are true? (select all that apply)

Options:

A.

They are both knowledge objects.


B.

Data models are created out of datasets called pivots.


C.

Pivot requires users to input SPL searches on data models.


D.

Pivot allows the creation of data visualizations that present different aspects of a data model.


Expert Solution
Questions # 67:

A search contains example(100,200). What is the name of the macro?

Options:

A.

example(2)


B.

example(var1,var2)


C.

example($,$)


D.

example[2]


Expert Solution
Questions # 68:

A user wants to create a workflow action that will retrieve a specific field value from an event and run a search in a new browser window

in the user's Splunk instance. What kind of workflow action should they create?

Options:

A.

A Run workflow action, because the user is running a new search with a specific field value from an event returned in the user's search.


B.

A Search workflow action, because the user is running a new search with a specific field value from an event returned in the user's search.


C.

A POST workflow action, because the search is being sent to the user's current Splunk instance.


D.

A GET workflow action, because a field value needs to be retrieved from the events returned in the user's search.


Expert Solution
Questions # 69:

The stats command will create a _____________ by default.

Options:

A.

Table


B.

Report


C.

Pie chart


Expert Solution
Questions # 70:

Given the event below, how can the value in the Zip_Code field be used to retrieve the weather from an external resource?

25/Oct/2023:20:29:43

151.162.101.143, v2.003, Zip_Code: 75510, DataCenter: DC1

Options:

A.

Create a GET workflow action


B.

Create a workflow action


C.

Create a PUT workflow action


D.

Create a Search workflow action


Expert Solution
Viewing page 7 out of 10 pages
Viewing questions 61-70 out of questions