Splunk 1/100

Splunk 1/100

Professional Development

100 Qs

quiz-placeholder

Similar activities

Behavior Analyst Certification Quiz

Behavior Analyst Certification Quiz

Professional Development

100 Qs

Hamilton College Family Quiz 2

Hamilton College Family Quiz 2

KG - Professional Development

100 Qs

Paket 7

Paket 7

Professional Development

100 Qs

Paket 6

Paket 6

Professional Development

100 Qs

Tes Psikotes Bhayagkara

Tes Psikotes Bhayagkara

Professional Development

100 Qs

Code Rousseau Maroc

Code Rousseau Maroc

10th Grade - Professional Development

101 Qs

TO 100

TO 100

University - Professional Development

100 Qs

Intro Semester 2 Exam 2018

Intro Semester 2 Exam 2018

9th Grade - Professional Development

100 Qs

Splunk 1/100

Splunk 1/100

Assessment

Quiz

Created by

Sebastián Gutiérrez

Specialty

Professional Development

2 plays

Easy

100 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

Which search string only returns events from hostWWW3?
host=*
host=WWW3
host=WWW*
Host=WWW3

2.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

By default, how long does Splunk retain a search job?
10 Minutes
15 Minutes
1 Day
7 Days

3.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

What must be done before an automatic lookup can be created? (Choose all that apply.)
The lookup command must be use
The lookup definition must be create
The lookup file must be uploaded to Splunk.
The lookup file must be verified using the inputlookup comman

4.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

Which of the following Splunk components typically resides on the machines where data originates?
Indexer
Forwarder
Search head
Deployment server

5.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

What determines the scope of data that appears in a scheduled report?
All data accessible to the User role will appear in the report.
All data accessible to the owner of the report will appear in the report.
All data accessible to all users will appear in the report until the next time the report is run.
The owner of the report can configure permissions so that the report uses either the User role or the owners profile at run time.

6.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

When writing searches in Splunk, which of the following is true about Booleans?
They must be lowercase.
They must be uppercase.
They must be in quotations.
They must be in parentheses.

7.

MULTIPLE CHOICE QUESTION

45 sec • 1 pt

Which of the following searches would return events with failure in index netfw or warn or critical in index netops?
(index=netfw failure) AND index=netops warn OR critical
(index=netfw failure) OR (index=netops (warn OR critical))
(index=netfw failure) AND (index=netops (warn OR critical))
(index=netfw failure) OR index=netops OR (warn OR critical)

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?