forwarders - Answers ingest and forward data to the index
indexers - Answers receive, index and store incoming data; searches
search-time knowledge objects - Answers extractions, alerts, dashboards
ulimit - Answers increased to allow for multiple buckets, forwarders, users
run splunk at boot - Answers ./splunk enable boot-start -user splunkuser
splunkd - Answers access, processes, indexes, searches incoming data
splunk start --accept-license - Answers accepts without prompt
splunk status - Answers display status
splunk show splunkd-port - Answers shows management port
splunk show web-port - Answers shows web-port
splunk show servername - Answers show servername of the instance
splunk show default-hostname - Answers show hostname used for all data inputs
enable monitoring console - Answers Monitoring Console > settings > general setup > apply changes
enterprise default path - Answers /opt/app/splunk/bin
index time - Answers user-independant background tasks: inputs, parsing, indexing
search time - Answers searching, dashboards
index time precedence: etc - Answers system/local, apps/search/local, apps/unix/local,
apps/search/default, apps/unix/default, system/default
search time precedence: etc - Answers users/user1/unix/local, apps/unix/local, apps/unix/defalut,
apps/search/local, apps/search/default
Index Time Merging of Configurations - Answers when splunk starts, conf files are merged together into
a single run-time model for each file type
get btool help - Answers splunk help btool
check btool - Answers splunk btool check
check inputs with btool - Answers splunk btool inputs list
list monitor inputs with btool - Answers splunk btool inputs list monitor:///var/log