Consider a use case involving firewall data. There is no Splunk-supported Technical Add-On, but the vendor has built one. What are the items that must be evaluated before installing the add-on? (Select all that apply.)
A. Validate if this Technical Add-On enables event data for a data model.
B. Identify the maximum number of forwarders Technical Add-On can support.
C. Identify number of scheduled or real-time searches.
D. Verify if Technical Add-On needs to be installed onto both a search head or indexer.
正解:A,C
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
What is the logical first step when starting a deployment plan?
A. Determine what apps and use cases will be implemented.
B. Gather statistics on the expected adoption of Splunk for sizing.
C. Collect the initial requirements for the deployment from all stakeholders.
D. Inventory the currently deployed logging infrastructure.
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
A Splunk instance has the following settings in SPLUNK_HOME/etc/system/local/server.conf:
[clustering]
mode = master
replication_factor = 2
pass4SymmKey = password123
Which of the following statements describe this Splunk instance? (Select all that apply.)
A. This Splunk instance needs to be restarted.
B. This cluster's search factor is 2.
C. This is a multi-site cluster.
D. This instance is missing the master_uri attribute.
正解:A,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
As a best practice, where should the internal licensing logs be stored?
A. Indexing layer.
B. Search head layer.
C. Deployment layer.
D. License server.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Which of the following is a best practice to maximize indexing performance?
A. Minimize configuration generality.
B. Use automatic source typing.
C. Use the Splunk default settings.
D. Not use pre-trained source types.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
At which default interval does metrics.log generate a periodic report regarding license utilization?
A. 60 seconds
B. 300 seconds
C. 30 seconds
D. 10 seconds
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
Which of the following are possible causes of a crash in Splunk? (select all that apply)
A. Insufficient disk IOPS.
B. Running out of disk space.
C. Insufficient memory.
D. Incorrect ulimit settings.
正解:A,B,C,D
解説: (Pass4Test メンバーにのみ表示されます)
相*茜 -
SPLK-2002問題集のPDF版を購入しました。この問題集を使って、私は試験の問題を答えられて、合格しました。
ありがとうございました。