SPLK-1001 Exam Question 106
What does the following specified time range do?
earliest=-72h@h latest=@d
earliest=-72h@h latest=@d
SPLK-1001 Exam Question 107
When an alert action is configured to run a script, Splunk must be able to locate the script. Which is one of the directories Splunk will look in to find the script?
SPLK-1001 Exam Question 108
Which events will be returned by the following search string?
host=www3 status=503
host=www3 status=503
SPLK-1001 Exam Question 109
Which command is used to review the contents of a specified static lookup file?
SPLK-1001 Exam Question 110
When placed early in a search, which command is most effective at reducing search execution time?
