What are Splunk alerts based on?
Answer : B
Splunk alerts are based on searches that run on a schedule or in real time. You can use alerts to monitor for and respond to specific events or conditions in your dat
Reference
Add an alert panel to a dashboard
Use webhooks with Splunk Enterprise
[Create and edit reports]
When is an alert triggered?
Answer : D
Explanation/Reference:
+triggered+When+results+of+a+search+meet+a+specifically+defined
+condition&source=bl&ots=avtEx5luxo&sig=ACfU3U1ZVob_j9nU243Te2vhqwxI3YvJuA&hl=en&sa=X&ved=2a
hUKEwjm48rmkfXoAhUlMewKHb_FAbkQ6AEwB3oECBYQJg
Which search will return the 15 least common field values for the dest_ip field?
Answer : C
Explanation/Reference: Reference: https://answers.splunk.com/answers/41928/add-a-lookup-csv-colum-information-to-the-results-ofa-inputlookup-search.html
What is the default lifetime of every Splunk search job?
Answer : D
Explanation/Reference:
In the Fields sidebar, what does the number directly to the right of the field name indicate?
Answer : C
Explanation/Reference: Reference: https://docs.splunk.com/Documentation/Splunk/8.0.3/SearchTutorial/Usefieldstosearch
Which of the following is the most efficient search?
Answer : A
Which command will rename action to Customer Action?
Answer : D
Explanation/Reference: Reference: https://answers.splunk.com/answers/610038/understanding-command-in-search.html