Kahoot 6 Flashcards

1
Q

What character acts as a wildcard in Splunk?

a. ) Question mark
b. ) Asterisk
c. ) Colon
d. ) Quotation marks

A

b.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Where are most linux logs located?

a. ) /etc/bin
b. ) /home/log
c. ) /var/log
d. ) /var/bin

A

c.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

All SIEM providers use standardized query syntax T or F

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Spunk query syntax with Search Processing Language and is similar to SQL T or F

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are two parsing methods used in Splunk?

a. ) Constant delimiters
b. ) Regex
c. ) Manual Selecting
d. ) Refreshing data

A

a & b

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which of the following operators does Splunk support?

a. ) NOT
b. ) OR
c. ) AND
d. ) All the above

A

d.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is used to contain a Nested operation?

a. ) Quotation marks
b. ) Dashes
c. ) Squared brackets
d. ) Parantheses

A

d.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Column-based, pie, $ bubble charts are different types of graphs used in the visualization tab T or F

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly