Question 46

At index time, in which field does Splunk store the timestamp value?
  • Question 47

    Query - status != 100:
  • Question 48

    Snapping rounds down to the nearest specified unit.
  • Question 49

    Which of the following are functions of the stats command?
  • Question 50

    Which search will return only events containing the word "error" and display the results as a table that includes the fields named action, src, and dest?