SPLK-2001 Dumps

SPLK-2001 Braindumps SPLK-2001 Real Questions SPLK-2001 Practice Test SPLK-2001 Actual Questions


Splunk


SPLK-2001


Splunk Certified Developer


https://killexams.com/pass4sure/exam-detail/SPLK-2001

Question: 57


Which of the following ensures that quotation marks surround the value referenced by the token?


  1. $token_name|s$

  2. $token_name$

  3. ($token_name$)

  4. \$token_name$\


Answer: A Reference:

https://docs.splunk.com/Documentation/Splunk/8.1.2/Viz/tokens


Question: 58


Which of the following is an intended use of HTTP Event Collector tokens?


  1. A cookie.

  2. An HTTP header field.

  3. A JSON field in the HTTP request.

  4. A password in conjunction with login.


Answer: B Reference:

https://docs.splunk.com/Documentation/Splunk/8.1.2/Data/FormateventsforHTTPEventCollector


Question: 59


When the search/jobs REST endpoint is called to execute a search, what can be done to reduce the results size in the results? (Select all that apply.)


  1. Use a generating search.

  2. Remove unneeded fields.

  3. Truncate the data, using selective functions.

  4. Summarize data, using analytic commands.


Answer: AB


Question: 60


Which of the following is a customization option for the Open in Search panel link button?


  1. Display the refresh time.

  2. Show the Export Results button.

  3. Show link buttons at the bottom of a panel.

  4. Define an alternative search or target view to use.


Answer: D


Question: 61


Which of the following are valid parent elements for the event action shown below? (Select all that apply.)

<set token=Token Name>sourcetype=$click.value|s$</set>


  1. <eval>

  2. <change>

  3. <change> <condition>

  4. <drilldown> <condition>


Answer: AC


Question: 62


In a DELETE request, what would omitting the value of _key from the REST endpoint do?


  1. Clean the KV store, deleting all content.

  2. Produce the syntax error Key value missing.

  3. Cause all records in a collection to be deleted.

  4. Mean that the _key value must be passed as an argument.


Answer: C


Question: 63


Which of the following is a way to monitor app performance? (Select all that apply.)


  1. Using Splunk logs.

  2. Using the search job inspector.

  3. Using the Monitoring Console.

  4. Using the storage/collections/config REST endpoint.


Answer: AC


Question: 64


Which files within an app contain permissions information? (Select all that apply.)


  1. local/metadata.conf

  2. metadata/local.meta

  3. default/metadata.conf

  4. metadata/default.meta


Answer: CD Reference:

https://dev.splunk.com/enterprise/docs/devtools/customsearchcommands/manageaccesstocustom/


Question: 65


Data can be added to a KV store collection in which of the following format(s)?


  1. JSON

  2. JSON, XML

  3. JSON, XML, CSV

  4. JSON, XML, CSV, TXT


Answer: A Reference:

https://dev.splunk.com/enterprise/docs/developapps/manageknowledge/kvstore/usingconfigurationfiles/


Question: 66


For a KV store, a lookup stanza in the transforms.conf file must contain which of the following? (Select all that apply.)


  1. collection

  2. fields_list

  3. external_type

  4. internal_type


Answer: AB Reference:

https://docs.splunk.com/Documentation/Splunk/8.1.2/Knowledge/ConfigureKVstorelookups