Question 51

ES needs to be installed on a search head with which of the following options?
  • Question 52

    A set of correlation searches are enabled at a new ES installation, and results are being monitored. One of the correlation searches is generating many notable events which, when evaluated, are determined to be false positives.
    What is a solution for this issue?
  • Question 53

    Which of the following are data models used by ES? (Choose all that apply)
  • Question 54

    The Add-On Builder creates Splunk Apps that start with what?
  • Question 55

    What is the main purpose of the Dashboard Requirements Matrix document?