New Year Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Which of the following items apply to anomaly detection? (Choose all that apply.)

A.

Use AD on KPIs that have an unestablished baseline of data points. This allows the ML pattern to perform it’s magic.

B.

A minimum of 24 hours of data is needed for anomaly detection, and a minimum of 4 entities for cohesive analysis.

C.

Anomaly detection automatically generates notable events when KPI data diverges from the pattern.

D.

There are 3 types of anomaly detection supported in ITSI: adhoc, trending, and cohesive.

In a distributed deployment, the ITSI SA-IndexCreation should get installed on which of the following Splunk instance types?

A.

Indexers and forwarders

B.

Search heads, indexers, and heavy forwarders

C.

Search heads, indexers, and universal forwarders

D.

Indexers and search heads

Within a correlation search, dynamic field values can be specified with what syntax?

A.

fieldname

B.

C.

%fieldname%

D.

eval(fieldname)

How can Service Now incidents be created automatically when a Multi-KPI alert triggers? (select all that apply)

A.

By creating a custom etc/apps/SA-lTOA/workflow_rules. conf

B.

By linking Entities to Service-Now configuration items.

C.

By creating a notable event aggregation policy with a SNOW incident action.

D.

By editing the associated correlation search and specifying an alert action.

Which of the following is a recommended best practice for service and glass table design?

A.

Plan and implement services first, then build detailed glass tables.

B.

Always use the standard icons for glass table widgets to improve portability.

C.

Start with base searches, then services, and then glass tables.

D.

Design glass tables first to discover which KPIs are important.

Which of the following are the default ports that must be configured on Splunk to use ITSI?

A.

SplunkWeb (8405), SplunkD (8519), and HTTP Collector (8628)

B.

SplunkWeb (8089), SplunkD (8088), and HTTP Collector (8000)

C.

SplunkWeb (8000), SplunkD (8089), and HTTP Collector (8088)

D.

SplunkWeb (8088), SplunkD (8089), and HTTP Collector (8000)

What effects does the KPI importance weight of 11 have on the overall health score of a service?

A.

At least 10% of the KPIs will go critical.

B.

Importance weight is unused for health scoring.

C.

The service will go critical.

D.

It is a minimum health indicator KPI.

Which of the following describes a way to delete multiple duplicate entities in ITSI?

A.

Via c CSV upload.

B.

Via the entity lister page.

C.

Via a search using the | deleteentity command.

D.

All of the above.

Which deep dive swim lane type does not require writing SPL?

A.

Event lane.

B.

Automatic lane.

C.

Metric lane.

D.

KPI lane.

Which anomaly detection algorithm is included within ITSI?

A.

Entity cohesion

B.

Standard deviation

C.

Linear regression

D.

Infantile regression