Pass the Splunk Splunk Enterprise Certified Admin SPLK-1003 Questions and answers with CertsForce

Viewing page 3 out of 6 pages
Viewing questions 21-30 out of questions
Questions # 21:

Which of the following are required when defining an index in indexes. conf? (select all that apply)

Options:

A.

coldPath


B.

homePath


C.

frozenPath


D.

thawedPath


Expert Solution
Questions # 22:

What type of data is counted against the Enterprise license at a fixed 150 bytes per event?

Options:

A.

License data


B.

Metricsdata


C.

Internal Splunk data


D.

Internal Windows logs


Expert Solution
Questions # 23:

Local user accounts created in Splunk store passwords in which file?

Options:

A.

$ SFLUNK_HOME/etc/passwd


B.

$ SFLUNK_HOME/etc/authentication


C.

$ S?LUNK_HOME/etc/users/passwd.conf


D.

$ SPLUNK HOME/etc/users/authentication.conf


Expert Solution
Questions # 24:

When are knowledge bundles distributed to search peers?

Options:

A.

After a user logs in.


B.

When Splunk is restarted.


C.

When adding a new search peer.


D.

When a distributed search is initiated.


Expert Solution
Questions # 25:

Which of the following is accurate regarding the input phase?

Options:

A.

Breaks data into events with timestamps.


B.

Applies event-level transformations.


C.

Fine-tunes metadata.


D.

Performs character encoding.


Expert Solution
Questions # 26:

Which additional component is required for a search head cluster?

Options:

A.

Deployer


B.

Cluster Master


C.

Monitoring Console


D.

Management Console


Expert Solution
Questions # 27:

What is an example of a proper configuration for CHARSET within props.conf?

Options:

A.

[host: : server. splunk. com]CHARSET = BIG5


B.

[index: :main]CHARSET = BIG5


C.

[sourcetype: : son]CHARSET = BIG5


D.

[source: : /var/log/ splunk]CHARSET = BIG5


Expert Solution
Questions # 28:

A user is assigned two roles with the following search filters. What is the user's applied search filter?

Question # 28

Options:

A.

SPLK-1003 Question 28 Option 1


B.

B. 28


C.

C. 28


D.

D. 28


Expert Solution
Questions # 29:

Which Splunk component performs indexing and responds to search requests from the search head?

Options:

A.

Forwarder


B.

Search peer


C.

License master


D.

Search head cluster


Expert Solution
Questions # 30:

To set up a Network input in Splunk, what needs to be specified'?

Options:

A.

File path.


B.

Username and password


C.

Network protocol and port number.


D.

Network protocol and MAC address.


Expert Solution
Viewing page 3 out of 6 pages
Viewing questions 21-30 out of questions