Question 66

At what point in the ES installation process should Splunk_TA_ForIndexes.spl be deployed to the indexers?
  • Question 67

    At what point in the ES installation process should Splunk_TA_ForIndexes.spl be deployed to the indexers?
  • Question 68

    What role should be assigned to a security team member who will be taking ownership of notable events in the incident review dashboard?
  • Question 69

    What do threat gen searches produce?
  • Question 70

    When using distributed configuration management to create the Splunk_TA_ForIndexers package, which three files can be included?