Because Splunk indexing is read/write intensive, it is important to select the appropriate disk storage
solution for each deployment. Which of the following statements is accurate about disk storage?
C
Which of the following tasks should the architect perform when building a deployment plan? (Select
all that apply.)
D
Which of the following statements describe search head clustering? (Select all that apply.)
A,C
What is the logical first step when starting a deployment plan?
D
Which of the following options can improve reliability of syslog delivery to Splunk? (Select all that
apply.)
C,D
When Splunk is installed. where are the internal indexes stored by default?
B
What is a Splunk Job? (Select all that apply.)
A
What is the default log size for Splunk internal logs?
C
Which two sections can be expanded using the Search Job Inspector?
B,C
A Splunk user successfully extracted an ip address into a field called src_ip. Their colleague cannot
see that field in their search results with events known to have src_ip. Which of the following may
explain the problem? (Select all that apply.)
D