최신 SPLK-1002 무료덤프 - Splunk Core Certified Power User
In the following eval statement, what is the value of description if the status is 503? index=main | eval description=case(status==200, "OK", status==404, "Not found", status==500, "Internal Server Error")
정답: C
설명: (DumpTOP 회원만 볼 수 있음)
When using multiple expressions in a single eval command, which delimiter is used?
정답: A
설명: (DumpTOP 회원만 볼 수 있음)
Which one of the following statements about the search command is true?
정답: C
설명: (DumpTOP 회원만 볼 수 있음)
When would a user select delimited field extractions using the Field Extractor (FX)?
정답: C
설명: (DumpTOP 회원만 볼 수 있음)
Which of the following searches would return a report of sales by product-name?
정답: B
설명: (DumpTOP 회원만 볼 수 있음)
Which of the following searches show a valid use of macro? (Select all that apply)
정답: C,D
설명: (DumpTOP 회원만 볼 수 있음)
To which of the following can a field alias be applied?
정답: A
설명: (DumpTOP 회원만 볼 수 있음)
A user wants to create a workflow action that will retrieve a specific field value from an event and run a search in a new browser window in the user's Splunk instance. What kind of workflow action should they create?
정답: C
설명: (DumpTOP 회원만 볼 수 있음)
Which of the following can be saved as an event type?
정답: C
설명: (DumpTOP 회원만 볼 수 있음)
Consider the following search:
Index=web sourcetype=access_combined
The log shows several events that share the same JSESSIONID value (SD404K289O2F151). View the events as a group. From the following list, which search groups events by JSESSIONID?
Index=web sourcetype=access_combined
The log shows several events that share the same JSESSIONID value (SD404K289O2F151). View the events as a group. From the following list, which search groups events by JSESSIONID?
정답: B
Calculated fields can be based on which of the following?
정답: B
설명: (DumpTOP 회원만 볼 수 있음)
Consider the following search:
index=web sourcetype=access_corabined
The log shows several events that share the same jsesszonid value (SD462K101O2F267). View the events as a group.
From the following list, which search groups events by jSSESSIONID?
index=web sourcetype=access_corabined
The log shows several events that share the same jsesszonid value (SD462K101O2F267). View the events as a group.
From the following list, which search groups events by jSSESSIONID?
정답: A
설명: (DumpTOP 회원만 볼 수 있음)
which of the following are valid options with the chart command
정답: A,D
Which of the following is a feature of the Pivot tool?
정답: D
설명: (DumpTOP 회원만 볼 수 있음)
Which of the following searches would create a graph similar to the one below?


정답: D
설명: (DumpTOP 회원만 볼 수 있음)
Why are tags useful in Splunk?
정답: C
설명: (DumpTOP 회원만 볼 수 있음)