<br />
<b>Warning</b>:  Undefined array key "HTTP_X_WP_TEMPORARY" in <b>/data/0/3/0307764f-852e-4456-9a8c-0bee8b8610da/visualization.sk/sub/blog/wp-config.php</b> on line <b>68</b><br />
<br />
<b>Warning</b>:  Undefined array key "HTTP_X_WP_TEMPORARY" in <b>/data/0/3/0307764f-852e-4456-9a8c-0bee8b8610da/visualization.sk/sub/blog/wp-config.php</b> on line <b>69</b><br />
{"id":55,"date":"2021-02-27T17:53:46","date_gmt":"2021-02-27T17:53:46","guid":{"rendered":"https:\/\/blog.visualization.sk\/?p=55"},"modified":"2021-02-27T20:09:11","modified_gmt":"2021-02-27T20:09:11","slug":"splunk-user-exam-preparation","status":"publish","type":"post","link":"https:\/\/blog.visualization.sk\/?p=55","title":{"rendered":"Splunk &#8211; User Exam Preparation"},"content":{"rendered":"\n<h2>Exam Outline<\/h2>\n\n\n\n<p>The Splunk core certified user exam covers eight domains: <\/p>\n\n\n\n<ul><li>Splunk Basics &#8211; 5%<\/li><li>Basic Searching &#8211; 22% <\/li><li>Using Fields in Searches &#8211; 20% <\/li><li>Search Language Fundamentals &#8211; 15%<\/li><li>Using Basic Transforming Commands &#8211; 15%<\/li><li>Creating Reports and Dashboards &#8211; 12 %<\/li><li>Creating and Using Lookups &#8211; 6%<\/li><li>Creating Scheaduled Reports and alerts &#8211; 5%<\/li><\/ul>\n\n\n\n<p><\/p>\n\n\n\n<h2>Example questions<\/h2>\n\n\n\n<ol><li>What are the main components of Splunk?<ol><li><strong>Splunk forwarder, indexer, search head<\/strong><\/li><li>Splunk indexer, heavy forwarder, search head<\/li><li>Splunk indexer, deployment manager, forwarder<\/li><li>Splunk heavy forwarder, deployment manager, splunk indexer<\/li><\/ol><\/li><li>When you install Splunk on a stand-alone machine, which components are on it?<ol><li>input data<\/li><li>parser<\/li><li>indexer<\/li><li><strong>all of the above<\/strong><\/li><\/ol><\/li><li>When you install the Splunk Enterprise free 60-day trial version, what is you daily index size?<ol><li>100 MB<\/li><li><strong>500 MB<\/strong><\/li><li>750 MB<\/li><li>1000 MB<\/li><\/ol><\/li><li>A &#8230;&#8230;&#8230;&#8230;.. displays statistical trends over time. <ol><li>chart value<\/li><li><strong>time series<\/strong><\/li><li>stats value<\/li><li>table value<\/li><\/ol><\/li><li>The &#8230;&#8230;&#8230;&#8230;. command can display any series of data you want to plot. <ol><li><strong>chart <\/strong><\/li><li>stat<\/li><li>time chart <\/li><li>both 1 and 2<\/li><\/ol><\/li><li>Which are filtering commands in Splunk?<ol><li>where, dedup, and head<\/li><li>dedup, head, and tail<\/li><li>where, dedup, and tail<\/li><li><strong>all of the above<\/strong><\/li><\/ol><\/li><li>A transaction is a grouping command.<ol><li><strong>true<\/strong><\/li><li>false<\/li><\/ol><\/li><\/ol>\n\n\n\n<p><\/p>\n\n\n\n<h2>More about exam<\/h2>\n\n\n\n<p>Notes:<\/p>\n\n\n\n<ul><li><strong>Splunk basics<\/strong> &#8211; componets, usages, apps, add-ons, customizing user settings, basic navigation in Splunk.<\/li><li><strong>Basic Searching<\/strong> &#8211; run basic search, time range, search results, refine searches, timeline, events, search job, save search results. <\/li><li><strong>Using Fields in Searches <\/strong>&#8211; fields, fields in searches, sidebar.<\/li><li><strong>Search Language Fundamentals <\/strong>&#8211; general search practices, basic search commands, search pipeline, indexes in search, table, rename, fields, dedup, sort. <\/li><li><strong>Using basic transforming commands <\/strong>&#8211; top, rare, stats.<\/li><li><strong>Creating Reports and Dashboards &#8211; <\/strong>save a search as a report, edit reports, create reports to display statistics, visualizations, charts, add a report to a dashboard, edit dashboard.<\/li><li><strong>Creating and Using Lookups <\/strong>&#8211; lookups, lookup file, lookup definition, automatic lookup, lookup in searches.<\/li><li><strong>Creating Scheaduled Reports and Alerts <\/strong>&#8211; scheduled report, configuration of scheduled reports, alerts.<\/li><li><\/li><\/ul>\n\n\n\n<h2>Sources<\/h2>\n\n\n\n<p>Sources (Examples of questions): <\/p>\n\n\n\n<ul><li>https:\/\/docs.splunk.com\/Documentation\/Splunk\/8.1.2\/SearchReference\/Stats<\/li><li>https:\/\/www.apress.com\/gp\/book\/9781484266687<\/li><li>https:\/\/docs.splunk.com\/Documentation\/Splunk\/latest\/SearchReference\/Transaction<\/li><\/ul>\n\n\n\n<p>Some sources for test preparations: <\/p>\n\n\n\n<ul><li>https:\/\/www.testpreptraining.com\/tutorial\/splunk-core-certified-user-splk-1001\/ <\/li><li>https:\/\/vceguide.com\/splunk\/<\/li><li>https:\/\/www.examtopics.com\/exams\/splunk\/splk-1001\/view\/<\/li><li>https:\/\/www.itexams.com\/info\/SPLK-1001<\/li><li>https:\/\/www.itexams.com\/exam\/SPLK-1001<\/li><\/ul>\n\n\n\n<p>Exam: &#8211; https:\/\/wsr.pearsonvue.com\/<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Exam Outline The Splunk core certified user exam covers eight domains: Splunk Basics &#8211; 5% Basic Searching &#8211; 22% Using Fields in Searches &#8211; 20% Search Language Fundamentals &#8211; 15% Using Basic Transforming Commands &#8211; 15% Creating Reports and Dashboards &#8211; 12 % Creating and Using Lookups &#8211; 6% Creating Scheaduled Reports and alerts &#8211; [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":[],"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=\/wp\/v2\/posts\/55"}],"collection":[{"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=55"}],"version-history":[{"count":6,"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=\/wp\/v2\/posts\/55\/revisions"}],"predecessor-version":[{"id":64,"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=\/wp\/v2\/posts\/55\/revisions\/64"}],"wp:attachment":[{"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=55"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=55"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.visualization.sk\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=55"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}