Log files related to Splunk REST calls can be found in which indexes? (Select all that apply.)
Which of the following options would be the best way to identify processor bottlenecks of a search?
Suppose the following query in a Simple XML dashboard returns a table including hyperlinks:
Which of the following is a valid dynamic drilldown element to allow a user of the dashboard to visit the hyperlinks contained in the link field?
Which of the following are reserved field names in a KV Store? (Select all that apply.)
When added to an app’s default.meta file, which of the following makes one of its views available to other apps?
Which of the following are benefits from using Simple XML Extensions? (Select all that apply.)
Which statements are true regarding HEC (HTTP Event Collector) tokens? (Select all that apply.)
When output_mode is not used, which element of a feed is a human readable name for a returned entry?
Which files within an app contain permissions information? (Select all that apply.)
Using Splunk Web to modify config settings for a shared object, a revised config file with those changes is placed in which directory?
When using the Splunk REST API, which of the following containers is/are included in the Atom Feed response? (Select all that apply.)
A fellow Splunk administrator is reviewing an app that has been downloaded from splunkbase and deployed in an organization. The admin has e-mailed the following configuration snippet with a brief note that says “fix the permissions”.
In what configuration file should the snippet be placed?
[]
access = read : [ * ], write : [ admin ] export - system
(Assume that $APP_HOME refers to the path that the app is installed, e.g. $SPLUNK_HOME/etc/apps/
When updating a knowledge object via REST, which of the following are valid values for the sharing Access Control List property?
In a DELETE request, what would omitting the value of _key from the REST endpoint do?
Which HTTP Event Collector (HEC) endpoint should be used to collect data in the following format?
{“message”:“Hello World”, “foo”:“bar”, “pony”:“buttercup”}
A KV store collection can be associated with a namespace for which of the following users?