Weekend Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sale65best

Free Splunk SPLK-1002 Practice Exam with Questions & Answers | Set: 6

Questions 51

If a search returns ____________ it can be viewed as a chart.

Options:
A.

timestamps

B.

statistics

C.

events

D.

keywords

Splunk SPLK-1002 Premium Access
Questions 52

This is what Splunk uses to categorize the data that is being indexed.

Options:
A.

sourcetype

B.

index

C.

source

D.

host

Questions 53

A field alias is created where field1—fieid2 and the Overwrite Field Values checkbox is selected.

What happens if an event only contains values for fieid1?

Options:
A.

field2 values are removed from the events.

B.

field1 and field2 values are merged.

C.

field2 values are unchanged.

D.

field2 values are replaced with the value of the field1.

Questions 54

For choropleth maps,splunk ships with the following KMZ files (select all that apply)

Options:
A.

States of the United States

B.

States and provinces of the united states and Canada

C.

Countries of the European Union

D.

Countries of the World

Questions 55

Where are the descriptions of the data models that come with the Splunk Common Information Model (CIM) Add-on documented?

Options:
A.

Search and reporting user manual.

B.

CIM Add-on manual.

C.

Pivot users manual.

D.

Datamodel command reference guide.

Questions 56

Which of the following statements describes macros?

Options:
A.

A macro is a reusable search string that must contain the full search.

B.

A macro is a reusable search string that must have a fixed time range.

C.

A macro Is a reusable search string that may have a flexible time range.

D.

A macro Is a reusable search string that must contain only a portion of the search.

Questions 57

Which of the following commands support the same set of functions?

Options:
A.

stats, eval, table

B.

search, where, eval

C.

stats, chart, timechart

D.

transaction, chart, timechart

Questions 58

In which Settings section are macros defined?

Options:
A.

Fields

B.

Tokens

C.

Advanced Search

D.

Searches, Reports, Alerts

Questions 59

The timechart command buckets data in time intervals depending on:

Options:
A.

the number of events returned

B.

the selected time range

C.

the type of visualization selected

Questions 60

When used with the timechart command, which value of the limit argument returns all values?

Options:
A.

limit=*

B.

limit=all

C.

limit=none

D.

limit=0