SPLK-1002 Exam Question 211
Which of the following searches will return events containing a tag named Privileged?
SPLK-1002 Exam Question 212
When used with the timechart command, which value of the limit argument returns all values?
SPLK-1002 Exam Question 213
When using | timechart by host, which field is represented in the x-axis?
SPLK-1002 Exam Question 214
Which of the following searches show a valid use of macro? (Select all that apply)


SPLK-1002 Exam Question 215
Which of the following describes the I transaction command?
