Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Splunk SPLK-1004 Practice Exam with Questions & Answers | Set: 2

Questions 11

Which stats function is used to return a sorted list of unique field values?

Options:
A.

values

B.

sum

C.

count

D.

list

Splunk SPLK-1004 Premium Access
Questions 12

What happens when a bucket's bloom filter predicts a match?

Options:
A.

Event data is read from journal.gz using the .tsidx files from that bucket.

B.

Field extractions are used to filter through the .tsidx files from that bucket.

C.

The filter is deleted from the indexer and wiped from memory.

D.

Event data is read from the .tsidx files using the postings from that bucket.

Questions 13

Which of the following is accurate about cascading inputs?

Options:
A.

They can be reset by an event handler.

B.

The final input has no impact on previous inputs.

C.

Only the final input of the sequence can supply a token to searches.

D.

Inputs added to panels cannot participate.

Questions 14

Where does the output of an append command appear in the search results?

Options:
A.

Added as a column to the right of the search results.

B.

Added as a column to the left of the search results.

C.

Added to the beginning of the search results.

D.

Added to the end of the search results.

Questions 15

Which of the following statements is correct regarding bloom filters?

Options:
A.

Hot buckets have no bloom filters as their contents are always changing.

B.

Bloom filters could return false positives or false negatives.

C.

Each bucket uses a unique hashing algorithm to create its bloom filter.

D.

The bloom filter contains trinary values: 0, 1, and 2.

Questions 16

When using the bin command, which argument sets the bin size?

Options:
A.

maxDataSizeMB

B.

max

C.

volume

D.

span

Questions 17

Which of the following drilldown methods does not exist in dynamic dashboards?

Options:
A.

Contextual Drilldown

B.

Dynamic Drilldown

C.

Custom Drilldown

D.

Static Drilldown

Questions 18

Which of the following best describes the process for tokenizing event data?

Options:
A.

The event data is broken up by values in the punch field.

B.

The event data is broken up by major breakers and then broken up further by minor breakers.

C.

The event data is broken up by a series of user-defined regex patterns.

D.

The event data has all punctuation stripped out and is then space-delimited.

Questions 19

What is the result of the xyseries command?

Options:
A.

To transform single series output into a multi-series output.

B.

To transform a stats-like output into chart-like output.

C.

To transform a multi-series output into single series output.

D.

To transform a chart-like output into a stats-like output.

Questions 20

How can form inputs impact dashboard panels using inline searches?

Options:
A.

Panels powered by an inline search require a minimum of one form input.

B.

Form inputs cannot impact panels using inline searches.

C.

Adding a form input to a dashboard converts all panels to prebuilt panels.

D.

A token in a search can be replaced by a form input value.