- (Exam Topic 2)
Which of the following is true about Pivot?
Correct Answer:
A
In Splunk, Pivot is a tool that allows you to report on a specific data set without using the Splunk Search Processing Language (SPL™)1. You can use a drag-and-drop interface to design and generate pivots that present different aspects of your data in the form of tables, charts, and other visualizations12.
One of the features of Pivot is that it allows you to save your reports1. This can be useful when you want to reuse a report or share it with others1. Therefore, it’s not true that users cannot share visualizations created with Pivot or that they must use SPL to find events in a Pivot12. It’s also not true that users cannot create visualizations with Pivot, as creating visualizations is one of the main functions of Pivot12.
- (Exam Topic 2)
Which of the following searches would return a report of sales by product-name?
Correct Answer:
B
https://docs.splunk.com/Documentation/Splunk/8.1.0/SearchReference/Chart https://docs.splunk.com/Documentation/Splunk/8.1.0/SearchReference/Stats
- (Exam Topic 1)
When should you use the transaction command instead of the scats command?
Correct Answer:
C
- (Exam Topic 1)
Which of the following are required to create a POST workflow action?
Correct Answer:
B
- (Exam Topic 1)
What does the transaction command do?
Correct Answer:
B