In the deployment planning process, when should a person identify who gets to see network data?
A. Data source inventory
B. Topology diagramming
C. Deployment schedule
D. Data policy definition
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
Configurations from the deployer are merged into which location on the search head cluster member?
A. SPLUNK_HOME/etc/system/local
B. SPLUNK_HOME/etc/apps/APP_HOME/local
C. SPLUNK_HOME/etc/apps/APP_HOME/default
D. SPLUNK_HOME/etc/apps/search/default
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Which part of the deployment plan is vital prior to installing Splunk indexer clusters and search head clusters?
A. Data source inventory.
B. Education and training plans.
C. Splunk deployment topology.
D. Data policy definitions.
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
A Splunk architect has inherited the Splunk deployment at Buttercup Games and end users are complaining that the events are inconsistently formatted for a web source. Further investigation reveals that not all weblogs flow through the same infrastructure: some of the data goes through heavy forwarders and some of the forwarders are managed by another department.
Which of the following items might be the cause of this issue?
A. The indexers may have different configurations than the heavy forwarders.
B. The search head may have different configurations than the indexers.
C. The forwarders managed by the other department are an older version than the rest.
D. The data inputs are not properly configured across all the forwarders.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Of the following types of files within an index bucket, which file type may consume the most disk?
A. Metadata (.data)
B. Inverted index (.tsidx)
C. Rawdata
D. Bloom filter
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
Which search head cluster component is responsible for pushing knowledge bundles to search peers, replicating configuration changes to search head cluster members, and scheduling jobs across the search head cluster?
A. Master
B. Captain
C. Deployer
D. Deployment server
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
Which of the following will cause the greatest reduction in disk size requirements for a cluster of N indexers running Splunk Enterprise Security?
A. Setting the cluster replication factor to N-1.
B. Increasing the number of buckets per index.
C. Setting the cluster search factor to N-1.
D. Decreasing the data model acceleration range.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
松井** -
ただ覚えるのではなく理解できるようになるSPLK-2002試験対策問題で、助かりました。Pass4Testはいいぞ