Pass the Splunk Splunk Core Certified Power User SPLK-1002 Questions and answers with CertsForce

Viewing page 8 out of 9 pages
Viewing questions 71-80 out of questions
Questions # 71:

Which of the following statements describes POST workflow actions?

Options:

A.

Configuration of a POST workflow action includes choosing a sourcetype.


B.

POST workflow actions can be configured to send email to the URI location.


C.

By default, POST workflow action are shown in both the event and field menus.


D.

POST workflow actions can be configured to send POST arguments to the URI location.


Expert Solution
Questions # 72:

What does the fillnull command do in this search?

index=main sourcetype=http:log | fillnull value="Unknown" src

Options:

A.

Set the values of the src field to null when it is "Unknown".


B.

Set all fields that are null to "Unknown".


C.

Set the values of the src field to "Unknown" if it is null.


D.

Set all fields with the value of "Unknown" to null.


Expert Solution
Questions # 73:

Which tool uses data models to generate reports and dashboard panels without using SPL?

Options:

A.

Visualization tab


B.

Pivot


C.

Datasets


D.

splunk CIM


Expert Solution
Questions # 74:

Which search commands allow a user to access data model summaries?

Options:

A.

pivot, stats, and datamodel


B.

pivot, tstats, and datamodel


C.

transaction, tstats, and datamodel


D.

stats, tstats, and datamodel


Expert Solution
Questions # 75:

This is what Splunk uses to categorize the data that is being indexed.

Options:

A.

Host


B.

Sourcetype


C.

Index


D.

Source


Expert Solution
Questions # 76:

By default, how is acceleration configured in the Splunk Common Information Model (CIM) add-on?

Options:

A.

Turned off


B.

Turned on


C.

Determined automatically based on the sourcetype.


D.

Determined automatically based on the data source.


Expert Solution
Questions # 77:

Which of the following options should a user add to a search to limit transactions to a five minute time window?

Options:

A.

duration=5m


B.

bin=5m


C.

earliest=-5m


D.

maxspan=5m


Expert Solution
Questions # 78:

Which of the following actions can the eval command perform?

Options:

A.

Remove fields from results.


B.

Create or replace an existing field.


C.

Group transactions by one or more fields.


D.

Save SPL commands to be reused in other searches.


Expert Solution
Questions # 79:

Which of the following commands support the same set of functions?

Options:

A.

stats, eval, table


B.

search, where, eval


C.

stats, chart, timechart


D.

transaction, chart, timechart


Expert Solution
Questions # 80:

Which of the following searches will show the number of categoryld used by each host?

Options:

A.

Sourcetype=access_* |sum bytes by host


B.

Sourcetype=access_* |stats sum(categorylD. by host


C.

Sourcetype=access_* |sum(bytes) by host


D.

Sourcetype=access_* |stats sum by host


Expert Solution
Viewing page 8 out of 9 pages
Viewing questions 71-80 out of questions