Free SPLK-1002 Exam Braindumps (page: 19)

Page 18 of 39

For choropleth maps,splunk ships with the following KMZ files (select all that apply)

  1. States of the United States
  2. States and provinces of the united states and Canada
  3. Countries of the European Union
  4. Countries of the World

Answer(s): A,D



Which function should you use with the transaction command to set the maximum total time between the earliest and latest events returned?

  1. maxpause
  2. endswith
  3. maxduration
  4. maxspan

Answer(s): D



Which of the following are valid options with the chart command ?(select all that apply)

  1. usenull=f
  2. useother=f
  3. split=t
  4. transcation=t

Answer(s): A,D



Which of the following commands will show the maximum bytes?

  1. sourcetype=access_* | maximum totals by bytes
  2. sourcetype=access_* | avg (bytes)
  3. sourcetype=access_* | stats max(bytes)
  4. sourcetype=access_* | max(bytes)

Answer(s): B






Post your Comments and Discuss Splunk® SPLK-1002 exam with other Community members:

SPLK-1002 Discussions & Posts