Which of the following monitor inputs stanza headers would match all of the following files?
/var/log/www1/secure.log
/var/log/www/secure.l
/var/log/www/logs/secure.logs
/var/log/www2/secure.log
In case of a conflict between a whitelist and a blacklist input setting, which one is used?
Which feature of Splunk’s role configuration can be used to aggregate multiple roles intended for groups of
users?
What are the minimum required settings when creating a network input in Splunk?
What happens when there are conflicting settings within two or more configuration files?
A security team needs to ingest a static file for a specific incident. The log file has not been collected previously and future updates to the file must not be indexed.
Which command would meet these needs?
A user is assigned two roles with the following search filters. What is the user's applied search filter?