Splunk Fundamentals 1 Quiz Questions
with Accurate Solutions
Machine data makes up for more than _____% of the data accumulated by
organizations. - -90
- Machine data is only generated by web servers. - -False
- Machine data is always structured. - -False
- A single instance deployment of Splunk handles: - -Input, Parsing, Indexing
and Searching
- What are the 3 main processing components of Splunk? - -Search Heads,
Indexers and Forwarders
- Which of these is not a main component of Splunk? - -Compress and
Archive
- Which function is not a part of a single instance deployment? - -Clustering
- Search requests are processed by the ________ - -Indexers
- ______ define what users can do in Splunk - -Roles
- You can launch and manage apps from the home app - -True
- The password for a newly installed Splunk instance is: - -Created when you
install Splunk
- What are the 3 main default roles in Splunk? - -User, Admin and Power
- What apps ship with Splunk? - -Home App and Search & Reporting
- In most production environments, _______ will be used as your main source
of data input. - -Forwarders
- Splunk uses ____________ to categorize the type of data being indexed. - -
Sourcetype
- Splunk knows where to break the event, where the time stamp is located
and how to automatically create field value pairs using these. - -Sourcetypes
with Accurate Solutions
Machine data makes up for more than _____% of the data accumulated by
organizations. - -90
- Machine data is only generated by web servers. - -False
- Machine data is always structured. - -False
- A single instance deployment of Splunk handles: - -Input, Parsing, Indexing
and Searching
- What are the 3 main processing components of Splunk? - -Search Heads,
Indexers and Forwarders
- Which of these is not a main component of Splunk? - -Compress and
Archive
- Which function is not a part of a single instance deployment? - -Clustering
- Search requests are processed by the ________ - -Indexers
- ______ define what users can do in Splunk - -Roles
- You can launch and manage apps from the home app - -True
- The password for a newly installed Splunk instance is: - -Created when you
install Splunk
- What are the 3 main default roles in Splunk? - -User, Admin and Power
- What apps ship with Splunk? - -Home App and Search & Reporting
- In most production environments, _______ will be used as your main source
of data input. - -Forwarders
- Splunk uses ____________ to categorize the type of data being indexed. - -
Sourcetype
- Splunk knows where to break the event, where the time stamp is located
and how to automatically create field value pairs using these. - -Sourcetypes