Question 116

Which knowledge Object does the Splunk Common Information Model (CIM) use to normalize data. in
addition to field aliases, event types, and tags?
  • Question 117

    Use this command to use lookup fields in a search and see the lookup fields in the field sidebar.