Free SPLK-1002 Exam Braindumps (page: 14)

Page 13 of 39

Which of the following are required to create a POST workflow action?

  1. Label, URI, search string.
  2. XMI attributes, URI, name.
  3. Label, URI, post arguments.
  4. URI, search string, time range picker.

Answer(s): B



Which of the following statements describes the command below (select all that apply) sourcetype-access_combined | transaction JSESSIONID

  1. An additional filed named maxspan is created.
  2. An additional Held named duration is created.
  3. An additional field named eventcount is created.
  4. Events with the same JSESSIONID will be grouped together into a single event.

Answer(s): B,C,D



What does the fillnull command replace null values with, it the value argument is not specified?

  1. 0
  2. N/A
  3. NaN
  4. NULL

Answer(s): A



Which of the following statements describe the search below? (select all that apply)

Index=main I transaction clientip host maxspan=30s maxpause=5s

  1. Events in the transaction occurred within 5 seconds.
  2. It groups events that share the same clientip and host.
  3. The first and last events are no more than 5 seconds apart.
  4. The first and last events are no more than 30 seconds apart.

Answer(s): B






Post your Comments and Discuss Splunk® SPLK-1002 exam with other Community members:

SPLK-1002 Discussions & Posts