SPLK-1002 Free Sample Questions

Splunk Core Certified Power User Practice Test
10/295 questions · Unlock full access
Q1

3Which workflow uses field values to perform a secondary search?

Q2

What is the correct syntax to search for a tag associated with a value on a specific field?

Q3

What is the correct syntax to search for a tag associated with a value on a specific field?

Q4

What are the two parts of a root event dataset?

Q5

When using| timechart by host, which field is represented in the x-axis?

Q6

Given the macro definition below, what should be entered into the Name and Arguments fields to correctly configure the macro?

Question image
Q7

A field alias has been created based on an original field. A search without any transforming commands is then executed in Smart Mode. Which field name appears in the results?

Q8

Which of the following statements would help a user choose between the transaction and stats commands?

Q9

What do events in a transaction have in common?

Q10Multiple answers

Which of the following statements about event types is true? (Choose all that apply.)