Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Splunk Splunk Enterprise Certified Admin SPLK-1003 Questions and answers with CertsForce

Viewing page 6 out of 6 pages
Viewing questions 51-60 out of questions
Questions # 51:

What options are available when creating custom roles? (select all that apply)

Options:

A.

Restrict search terms


B.

Whitelist search terms


C.

Limit the number of concurrent search jobs


D.

Allow or restrict indexes that can be searched.


Expert Solution
Questions # 52:

Which feature of Splunk’s role configuration can be used to aggregate multiple roles intended for groups of

users?

Options:

A.

Linked roles


B.

Grantable roles


C.

Role federation


D.

Role inheritance


Expert Solution
Questions # 53:

The universal forwarder has which capabilities when sending data? (select all that apply)

Options:

A.

Sending alerts


B.

Compressing data


C.

Obfuscating/hiding data


D.

Indexer acknowledgement


Expert Solution
Questions # 54:

Which default Splunk role could be assigned to provide users with the following capabilities?

Create saved searches

Edit shared objects and alerts

Not allowed to create custom roles

Options:

A.

admin


B.

power


C.

user


D.

splunk-system-role


Expert Solution
Questions # 55:

A log file contains 193 days worth of timestamped events. Which monitor stanza would be used to collect data 45 days old and newer from that log file?

Options:

A.

followTail = -45d


B.

ignore = 45d


C.

includeNewerThan = -35d


D.

ignoreOlderThan = 45d


Expert Solution
Questions # 56:

Which of the following are supported options when configuring optional network inputs?

Options:

A.

Metadata override, sender filtering options, network input queues (quantum queues)


B.

Metadata override, sender filtering options, network input queues (memory/persistent queues)


C.

Filename override, sender filtering options, network output queues (memory/persistent queues)


D.

Metadata override, receiver filtering options, network input queues (memory/persistent queues)


Expert Solution
Questions # 57:

What happens when there are conflicting settings within two or more configuration files?

Options:

A.

The setting is ignored until conflict is resolved.


B.

The setting for both values will be used together.


C.

The setting with the lowest precedence is used.


D.

The setting with the highest precedence is used.


Expert Solution
Questions # 58:

How can native authentication be disabled in Splunk?

Options:

A.

Remove the $SPLUNK_HOME/etc/passwd file


B.

Create an empty $SPLUNK_HOME/etc/passwd file


C.

Set SPLUNK_AUTHENTICATION=false in splunk-launch.conf


D.

Set nativeAuthentication=false in authentication.conf


Expert Solution
Questions # 59:

After configuring a universal forwarder to communicate with an indexer, which index can be checked via the Splunk Web UI for a successful connection?

Options:

A.

index=main


B.

index=test


C.

index=summary


D.

index=_internal


Expert Solution
Questions # 60:

Which pathway represents where a network input in Splunk might be found?

Options:

A.

$SPLUNK HOME/ etc/ apps/ ne two r k/ inputs.conf


B.

$SPLUNK HOME/ etc/ apps/ $appName/ local / inputs.conf


C.

$SPLUNK HOME/ system/ local /udp.conf


D.

$SPLUNK HOME/ var/lib/ splunk/$inputName/homePath/


Expert Solution
Viewing page 6 out of 6 pages
Viewing questions 51-60 out of questions