Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Splunk Splunk Enterprise Certified Admin SPLK-1003 Questions and answers with CertsForce

Viewing page 1 out of 6 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which Splunk indexer operating system platform is supported when sending logs from a Windows universal forwarder?

Options:

A.

Any OS platform


B.

Linux platform only


C.

Windows platform only.


D.

None of the above.


Expert Solution
Questions # 2:

What is required when adding a native user to Splunk? (select all that apply)

Options:

A.

Password


B.

Username


C.

Full Name


D.

Default app


Expert Solution
Questions # 3:

What is the default character encoding used by Splunk during the input phase?

Options:

A.

UTF-8


B.

UTF-16


C.

EBCDIC


D.

ISO 8859


Expert Solution
Questions # 4:

To set up a Network input in Splunk, what needs to be specified'?

Options:

A.

File path.


B.

Username and password


C.

Network protocol and port number.


D.

Network protocol and MAC address.


Expert Solution
Questions # 5:

What action is required to enable forwarder management in Splunk Web?

Options:

A.

Navigate to Settings > Server Settings > General Settings, and set an App server port.


B.

Navigate to Settings > Forwarding and receiving, and click on Enable Forwarding.


C.

Create a server class and map it to a client inSPLUNK_HOME/etc/system/local/serverclass.conf.


D.

Place an app in theSPLUNK_HOME/etc/deployment-appsdirectory of the deployment server.


Expert Solution
Questions # 6:

Which Splunk component performs indexing and responds to search requests from the search head?

Options:

A.

Forwarder


B.

Search peer


C.

License master


D.

Search head cluster


Expert Solution
Questions # 7:

Local user accounts created in Splunk store passwords in which file?

Options:

A.

$ SFLUNK_HOME/etc/passwd


B.

$ SFLUNK_HOME/etc/authentication


C.

$ S?LUNK_HOME/etc/users/passwd.conf


D.

$ SPLUNK HOME/etc/users/authentication.conf


Expert Solution
Questions # 8:

What are the required stanza attributes when configuring the transforms. conf to manipulate or remove events?

Options:

A.

REGEX, DEST. FORMAT


B.

REGEX.SRC_KEY, FORMAT


C.

REGEX, DEST_KEY, FORMAT


D.

REGEX, DEST_KEY FORMATTING


Expert Solution
Questions # 9:

Search heads in a company's European offices need to be able to search data in their New York offices. They also need to restrict access to certain indexers. What should be configured to allow this type of action?

Options:

A.

Indexer clustering


B.

LDAP control


C.

Distributed search


D.

Search head clustering


Expert Solution
Questions # 10:

When indexing a data source, which fields are considered metadata?

Options:

A.

source, host, time


B.

time, sourcetype, source


C.

host, raw, sourcetype


D.

sourcetype, source, host


Expert Solution
Viewing page 1 out of 6 pages
Viewing questions 1-10 out of questions