What event-processing pipelines are used to process data for indexing? (select all that apply)
Which of the following lists the three phases of the Splunk Indexing process in order?
Which network input option provides durable file-system buffering of data to mitigate data loss due to network outages and splunkd restarts?
Which of the following is a valid method to create a Splunk user?
When running the command shown below, what is the default path in which deployment server. conf is created?
splunk set deploy-poll deployServer:port
Which of the following apply to how distributed search works? (select all that apply)
Which is a valid stanza for a network input?
A non-clustered Splunk environment has three indexers (A,B,C) and two search heads (X, Y). During a search executed on search head X, indexer A crashes. What is Splunk's response?
All search-time field extractions should be specified on which Splunk component?
Search heads in a company's European offices need to be able to search data in their New York offices. They also need to restrict access to certain indexers. What should be configured to allow this type of action?