Big 11.11 Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sale65best

Free Splunk SPLK-2002 Practice Exam with Questions & Answers | Set: 6

Questions 51

Why should intermediate forwarders be avoided when possible?

Options:
A.

To minimize license usage and cost.

B.

To decrease mean time between failures.

C.

Because intermediate forwarders cannot be managed by a deployment server.

D.

To eliminate potential performance bottlenecks.

Splunk SPLK-2002 Premium Access
Questions 52

Which of the following is an indexer clustering requirement?

Options:
A.

Must use shared storage.

B.

Must reside on a dedicated rack.

C.

Must have at least three members.

D.

Must share the same license pool.

Questions 53

Stakeholders have identified high availability for searchable data as their top priority. Which of the following best addresses this requirement?

Options:
A.

Increasing the search factor in the cluster.

B.

Increasing the replication factor in the cluster.

C.

Increasing the number of search heads in the cluster.

D.

Increasing the number of CPUs on the indexers in the cluster.

Questions 54

At which default interval does metrics.log generate a periodic report regarding license utilization?

Options:
A.

10 seconds

B.

30 seconds

C.

60 seconds

D.

300 seconds

Questions 55

Which of the following strongly impacts storage sizing requirements for Enterprise Security?

Options:
A.

The number of scheduled (correlation) searches.

B.

The number of Splunk users configured.

C.

The number of source types used in the environment.

D.

The number of Data Models accelerated.

Questions 56

(A customer has a Splunk Enterprise deployment and wants to collect data from universal forwarders. What is the best step to secure log traffic?)

Options:
A.

Create signed SSL certificates and use them to encrypt data between the forwarders and indexers.

B.

Use the Splunk provided SSL certificates to encrypt data between the forwarders and indexers.

C.

Ensure all forwarder traffic is routed through a web application firewall (WAF).

D.

Create signed SSL certificates and use them to encrypt data between the search heads and indexers.

Questions 57

Which of the following statements describe licensing in a clustered Splunk deployment? (Select all that apply.)

Options:
A.

Free licenses do not support clustering.

B.

Replicated data does not count against licensing.

C.

Each cluster member requires its own clustering license.

D.

Cluster members must share the same license pool and license master.

Questions 58

Which of the following clarification steps should be taken if apps are not appearing on a deployment client? (Select all that apply.)

Options:
A.

Check serverclass.conf of the deployment server.

B.

Check deploymentclient.conf of the deployment client.

C.

Check the content of SPLUNK_HOME/etc/apps of the deployment server.

D.

Search for relevant events in splunkd.log of the deployment server.

Questions 59

If .delta replication fails during knowledge bundle replication, what is the fall-back method for Splunk?

Options:
A.

.Restart splunkd.

B.

.delta replication.

C.

.bundle replication.

D.

Restart mongod.