Free SPLK-1001 Exam Braindumps (page: 9)

Page 8 of 62

Which of the following searches would return events with failure in index netfw or warn or critical in index netops?

  1. (index=netfw failure) AND index=netops warn OR critical
  2. (index=netfw failure) OR (index=netops (warn OR critical))
  3. (index=netfw failure) AND (index=netops (warn OR critical))
  4. (index=netfw failure) OR index=netops OR (warn OR critical)

Answer(s): B



Select the answer that displays the accurate placing of the pipe in the following search string:
index=security sourcetype=access_* status=200 stats count by price

  1. index=security sourcetype=access_* status=200 stats | count by price
  2. index=security sourcetype=access_* status=200 | stats count by price
  3. index=security sourcetype=access_* status=200 | stats count | by price
  4. index=security sourcetype=access_* | status=200 | stats count by price

Answer(s): B



What does the stats command do?

  1. Automatically correlates related fields
  2. Converts field values into numerical values
  3. Calculates statistics on data that matches the search criteria
  4. Analyzes numerical fields for their ability to predict another discrete field

Answer(s): C



Which is a primary function of the timeline located under the search bar?

  1. To differentiate between structured and unstructured events in the data
  2. To sort the events returned by the search command in chronological order
  3. To zoom in and zoom out. although this does not change the scale of the chart
  4. To show peaks and/or valleys in the timeline, which can indicate spikes in activity or downtime

Answer(s): D






Post your Comments and Discuss Splunk® SPLK-1001 exam with other Community members:

SPLK-1001 Discussions & Posts