SPLK-2002 Dumps

SPLK-2002 Free Practice Test

Splunk SPLK-2002: Splunk Enterprise Certified Architect

QUESTION 1

A Splunk user successfully extracted an ip address into a field called src_ip. Their colleague cannot see that field in their search results with events known to have src_ip. Which of the following may explain the problem? (Select all that apply.)

Correct Answer: D

QUESTION 2

Which of the following are client filters available in serverclass.conf? (Select all that apply.)

Correct Answer: AB

QUESTION 3

Which of the following are true statements about Splunk indexer clustering?

Correct Answer: B

QUESTION 4

Which of the following should be done when installing Enterprise Security on a Search Head Cluster? (Select all that apply.)

Correct Answer: AD

QUESTION 5

A multi-site indexer cluster can be configured using which of the following? (Select all that apply.)

Correct Answer: AB