Question 111

Three basic components of Splunk are (Choose three.):
  • Question 112

    Which search matches the events containing the terms "error" and "fail"?
  • Question 113

    How does Splunk determine which fields to extract from data?
  • Question 114

    What does the following specified time range do?
    earliest=-72h@h latest=@d