What is a role in Splunk? (select all that apply)
How do you remove missing forwarders from the Monitoring Console?
Where should apps be located on the deployment server that the clients pull from?
A Splunk administrator has been tasked with developing a retention strategy to have frequently accessed data sets on SSD storage and to have older, less frequently accessed data on slower NAS storage. They have set a mount point for the NAS. Which parameter do they need to modify to set the path for the older, less frequently accessed data in indexes.conf?
Which Splunk component performs indexing and responds to search requests from the search head?
When working with an indexer cluster, what changes with the global precedence when comparing to a standalone deployment?
During search time, which directory of configuration files has the highest precedence?
Which default Splunk role could be assigned to provide users with the following capabilities?
Create saved searches
Edit shared objects and alerts
Not allowed to create custom roles
When Splunk is integrated with LDAP, which attribute can be changed in the Splunk UI for an LDAP user?
What is required when adding a native user to Splunk? (select all that apply)