Pass the Splunk Splunk Core Certified Power User SPLK-1002 Questions and answers with CertsForce

Viewing page 7 out of 9 pages
Viewing questions 61-70 out of questions
Questions # 61:

It is mandatory for the lookup file to have this for an automatic lookup to work.

Options:

A.

Source type


B.

At least five columns


C.

Timestamp


D.

Input filed


Expert Solution
Questions # 62:

When creating a Search workflow action, which field is required?

Options:

A.

Search string


B.

Data model name


C.

Permission setting


D.

An eval statement


Expert Solution
Questions # 63:

In the Field Extractor Utility, this button will display events that do not contain extracted fields.

Select your answer.

Options:

A.

Selected-Fields


B.

Non-Matches


C.

Non-Extractions


D.

Matches


Expert Solution
Questions # 64:

Information needed to create a GET workflow action includes which of the following? (select all that apply.)

Options:

A.

A name of the workflow action


B.

A URI where the user will be directed at search time.


C.

A label that will appear in the Event Action menu at search time.


D.

A name for the URI where the user will be directed at search time.


Expert Solution
Questions # 65:

Where are the descriptions of the data models that come with the Splunk Common Information Model (CIM) Add-on documented?

Options:

A.

Search and reporting user manual.


B.

CIM Add-on manual.


C.

Pivot users manual.


D.

Datamodel command reference guide.


Expert Solution
Questions # 66:

When performing a regex field extraction with the Field Extractor (FX), a data type must be chosen before a sample event can be selected. Which of the following data types are supported?

Options:

A.

index or source


B.

sourcetype or host


C.

index or sourcetype


D.

sourcetype or source


Expert Solution
Questions # 67:

The macro weekly_sales (2) contains the search string:

index=games | eval ProductSales = $Price$ * $AmountSold$

Which of the following will return results?

Options:

A.

‘weekly sales (3)’


B.

‘weekly_sales($3.995, $108)’


C.

'weekly_sales (3.99, 10)’


D.

‘weekly sales (3.99, 10)’


Expert Solution
Questions # 68:

In this search, __________ will appear on the y-axis. SEARCH: sourcetype=access_combined status!=200 | chart count over host

Options:

A.

status


B.

host


C.

count


Expert Solution
Questions # 69:

What is the correct Boolean order of evaluation for the where command from first to last?

Options:

A.

NOT, Parentheses, OR, AND


B.

AND, Parentheses, NOT, OR


C.

Parentheses, NOT, AND, OR


D.

Parentheses, NOT, OR, AND


Expert Solution
Questions # 70:

Which of the following is a feature of the Pivot tool?

Options:

A.

Creates lookups without using SPL.


B.

Data Models are not required.


C.

Creates reports without using SPL


D.

Datasets are not required.


Expert Solution
Viewing page 7 out of 9 pages
Viewing questions 61-70 out of questions