Free SPLK-1003 Exam Braindumps (page: 17)

Page 16 of 35

Which configuration files are used to transform raw data ingested by Splunk? (Choose all that apply.)

  1. props.conf
  2. inputs.conf
  3. rawdata.conf
  4. transforms.conf

Answer(s): A


Reference:

https://docs.splunk.com/Documentation/Splunk/8.0.5/Data/Configuretimestamprecognition



What conf file needs to be edited to set up distributed search groups?

  1. props.conf
  2. search.conf
  3. distsearch.conf
  4. distibutedsearch.conf

Answer(s): C


Reference:

https://docs.splunk.com/Documentation/Splunk/8.0.5/DistSearch/Distributedsearchgroups



After configuring a universal forwarder to communicate with an indexer, which index can be checked via the Splunk Web UI for a successful connection?

  1. index=main
  2. index=test
  3. index=summary
  4. index=_internal

Answer(s): D


Reference:

https://docs.splunk.com/Documentation/Splunk/8.0.5/Security/Validateyourconfiguration



Which of the following are available input methods when adding a file input in Splunk Web? (Choose all that apply.)

  1. Index once.
  2. Monitor interval.
  3. On-demand monitor.
  4. Continuously monitor.

Answer(s): D






Post your Comments and Discuss Splunk® SPLK-1003 exam with other Community members:

Exam Discussions & Posts