ES Deployment Flashcards

1
Q

How is it possible to specify an alternate location for accelerated storage?

A

Use the tStatsHomePath setting in indexes.conf

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following is a recommended pre-installation step?
- Install the latest Python distribution on the search head.
- Disabled the default search app.
- Download the latest version of KV Store from MongoDB.com
- Configure search head forwarding

A

Configure search head forwarding

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which of the following would allow an add-on to be automatically imported into Splunk Enterprise Security?
- A suffix of .spl
- A prefix of Splunk TA-
- A prefix of TECH_
- A prefix of CIM_

A

A prefix of Splunk TA-

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Splunk ES automatically imports apps and add-ons that are prefixed with any of the following:

A
  • DA-ESS
  • SA-
  • TA-
  • Splunk_SA_
  • Splunk_TA_
  • Splunk_DA-ESS
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How is it possible to navigate to the ES graphical Navigation Bar editor?

A

Configure > General > Navigation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly