What is required when adding a native user to Splunk? (Select all that apply.)
Correct Answer:
CD
Reference: https://docs.splunk.com/Documentation/Splunk/7.3.1/Security/Addandeditusers
How would you configure your distsearch.conf to allow you to run the search below?
sourcetype=access_combined status=200 action=purchase splunk_server_group=HOUSTON
Correct Answer:
D
What is the default character encoding used by Splunk during the input phase?
Correct Answer:
A
Reference: https://docs.splunk.com/Documentation/Splunk/7.3.1/Data/Configurecharactersetencoding
How do you remove missing forwarders from the Monitoring Console?
Correct Answer:
D
Reference: https://answers.splunk.com/answers/447096/how-to-remove-missing-forwarders-from-the-distribu.html
Which Splunk component performs indexing and responds to search requests from the search head?
Correct Answer:
B
Reference: https://www.edureka.co/blog/splunk-architecture/