Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Splunk SPLK-3002 Practice Exam with Questions & Answers | Set: 2

Questions 11

Which glass table feature can be used to toggle displaying KPI values from more than one service on a single widget?

Options:
A.

Service templates.

B.

Service dependencies.

C.

Ad-hoc search.

D.

Service swapping.

Splunk SPLK-3002 Premium Access
Questions 12

What is the default importance value for dependent services’ health scores?

Options:
A.

11

B.

1

C.

Unassigned

D.

10

Questions 13

In which index are active notable events stored?

Options:
A.

itsi_notable_archive

B.

itsi_notable_audit

C.

itsi_tracked_alerts

D.

itsi_tracked_groups

Questions 14

In maintenance mode, which features of KPIs still function?

Options:
A.

KPI searches will execute but will be buffered until the maintenance window is over.

B.

KPI searches still run during maintenance mode, but results go to itsi_maintenance_summary index.

C.

New KPIs can be created, but existing KPIs are locked.

D.

KPI calculations and threshold settings can be modified.

Questions 15

Which of the following are characteristics of service templates? (select all that apply)

Options:
A.

Service templates can be modified after services are instantiated from it.

B.

Service templates contain KPIs and KPI thresholds.

C.

Service templates can contain specific or generic entity rules.

D.

Service templates contain domain specific dashboards and deep dives.

Questions 16

How can Service Now incidents be created automatically when a Multi-KPI alert triggers? (select all that apply)

Options:
A.

By creating a custom etc/apps/SA-lTOA/workflow_rules. conf

B.

By linking Entities to Service-Now configuration items.

C.

By creating a notable event aggregation policy with a SNOW incident action.

D.

By editing the associated correlation search and specifying an alert action.

Questions 17

Which of the following items apply to anomaly detection? (Choose all that apply.)

Options:
A.

Use AD on KPIs that have an unestablished baseline of data points. This allows the ML pattern to perform it’s magic.

B.

A minimum of 24 hours of data is needed for anomaly detection, and a minimum of 4 entities for cohesive analysis.

C.

Anomaly detection automatically generates notable events when KPI data diverges from the pattern.

D.

There are 3 types of anomaly detection supported in ITSI: adhoc, trending, and cohesive.

Questions 18

Which of the following is a characteristic of base searches?

Options:
A.

Search expression, entity splitting rules, and thresholds are configured at the base search level.

B.

It is possible to filter to entities assigned to the service for calculating the metrics for the service’s KPIs.

C.

The fewer KPIs that share a common base search, the more efficiency a base search provides, and anomaly detection is more efficient.

D.

The base search will execute whether or not a KPI needs it.

Questions 19

Which of the following is a best practice for identifying the most effective services with which to start an iterative ITSI deployment?

Options:
A.

Only include KPIs if they will be used in multiple services.

B.

Analyze the business to determine the most critical services.

C.

Focus on low-level services.

D.

Define a large number of key services early.

Questions 20

When must a service define entity rules?

Options:
A.

If the intention is for the KPIs in the service to filter to only entities assigned to the service.

B.

To enable entity cohesion anomaly detection.

C.

If some or all of the KPIs in the service will be split by entity.

D.

If the intention is for the KPIs in the service to have different aggregate vs. entity KPI values.