
System admin
Authored by Christian Christian
Information Technology (IT)
Professional Development
Used 4+ times

AI Actions
Add similar questions
Adjust reading levels
Convert to real-world scenario
Translate activity
More...
Content View
Student View
31 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which Splunk installation package is used to install the Search Head?
Splunk Search Head installation package
Splunk Enterprise installation package
Splunk Heavy Forwarder installation package
Splunk Universal Forwarder installation package
Answer explanation
The Splunk Enterprise installation package can be used to install most Splunk server components. The Universal Forwarder (UF) installation package is a lighter version of Splunk that is simply used to forward data to indexers. The other options are not existing packages.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following operating systems configures Splunk to boot-start automatically by default?
Windows only
Linux only
Both Windows and Linux
Neither Windows and Linux
Answer explanation
On Windows, Splunk is set to start automatically on boot. On Linux, you must manually run a version of the splunk enable boot-start command.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is the default installation path for Splunk (also known asSPLUNK_HOME) on Linux?
/opt/splunk
/var/splunk
/opt/splunk/etc/var/lib
/opt/splunk_home
Answer explanation
On Linux, the default Splunk installation path (SPLUNK_HOME) is /opt/splunk. The default Splunk database path (SPLUNK_DB) where indexes are stored is /opt/splunk/etc/var/lib.
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following port numbers is associated with the splunkd process by default?
8000
8088
8089
9997
Answer explanation
Port 8089 is used by splunkd by default.
Port 8000 is the default for Splunk Web, and port 9997 is often used as a Splunk listening port.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
If the Monitoring Console must be installed on a system with another Splunk component, which of the following would be the most recommended location?
On any Search Head
On a License Manager
On any Deployment Server
On any Indexer
Answer explanation
It is recommended to install the MC on it’s own system. If collocated with another Splunk component, a License Manager or a smaller Deployment Servers (environments with < 50 clients) is most recommended. Avoid Search Heads and Indexers.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following is a cloud-connected service that leverages telemetry data to provide Splunk environment insights in real-time?
Splunk Diag
Rapid Diag
Splunk Instrumentation
Splunk Assist
Answer explanation
Starting with Splunk 9.0, the MC provides Splunk Assist, a cloud-connected service for Splunk Enterprise and Splunk Cloud that leverages telemetry data to generate insights in real time. Splunk Assist uses helper packages such as AppAssist, CertAssist and ConfigAssist.
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following is not true about Splunk Diag tools?
Splunk Diag must be run from a Search Head
Splunk Diag is available on the command line
Splunk Diag does not retrieve index data
Rapid Diag can collect data from distributed Splunk instances
Answer explanation
Splunk Diag is available from any Splunk instance.
Access all questions and much more by creating a free account
Create resources
Host any resource
Get auto-graded reports

Continue with Google

Continue with Email

Continue with Classlink

Continue with Clever
or continue with

Microsoft
%20(1).png)
Apple
Others
Already have an account?