SPLK-1003 Dumps

SPLK-1003 Free Practice Test

Splunk SPLK-1003: Splunk Enterprise Certified Admin

QUESTION 21

Which of the following apply to how distributed search works? (Select all that apply.)

Correct Answer: A
Reference: https://docs.splunk.com/Documentation/Splunk/7.3.1/DistSearch/Whatisdistributedsearch

QUESTION 22

What is required when adding a native user to Splunk? (Select all that apply.)

Correct Answer: CD
Reference: https://docs.splunk.com/Documentation/Splunk/7.3.1/Security/Addandeditusers

QUESTION 23

When configuring monitor inputs with whitelists or blacklists, what is the supported method of filtering the lists?

Correct Answer: B
Reference: https://docs.splunk.com/Documentation/Splunk/7.3.1/Updating/Filterclients

QUESTION 24

Within props.conf, which stanzas are valid for data modification? (Select all that apply.)

Correct Answer: CD
Reference: https://answers.splunk.com/answers/3687/host-stanza-in-props-conf-not-being-honored-for-udp-514-data-sources.html