Free SPLK-1002 Exam Braindumps (page: 11)

Page 10 of 39

Which of the following Statements about macros is true? (select all that apply)

  1. Arguments are defined at execution time.
  2. Arguments are defined when the macro is created.
  3. Argument values are used to resolve the search string at execution time.
  4. Argument values are used to resolve the search string when the macro is created.

Answer(s): A,C



Data model fields can be added using the Auto-Extracted method. Which of the following statements describe Auto-Extracted fields? (select all that apply)

  1. Auto-Extracted fields can be hidden in Pivot.
  2. Auto-Extracted fields can have their data type changed.
  3. Auto-Extracted fields can be given a friendly name for use in Pivot.
  4. Auto-Extracted fields can be added if they already exist in the dataset with constraints.

Answer(s): B



When multiple event types with different color values are assigned to the same event, what determines the color displayed for the events?

  1. Rank
  2. Weight
  3. Priority
  4. Precedence

Answer(s): C



Which of the following statements describe the Common Information Model (QM)? (select all that apply)

  1. CIM is a methodology for normalizing data.
  2. CIM can correlate data from different sources.
  3. The Knowledge Manager uses the CIM to create knowledge objects.
  4. CIM is an app that can coexist with other apps on a single Splunk deployment.

Answer(s): A,B,D






Post your Comments and Discuss Splunk® SPLK-1002 exam with other Community members:

SPLK-1002 Discussions & Posts