Kahoot 6 Flashcards
What character acts as a wildcard in Splunk?
a. ) Question mark
b. ) Asterisk
c. ) Colon
d. ) Quotation marks
b.)
Where are most linux logs located?
a. ) /etc/bin
b. ) /home/log
c. ) /var/log
d. ) /var/bin
c.)
All SIEM providers use standardized query syntax T or F
False
Spunk query syntax with Search Processing Language and is similar to SQL T or F
True
What are two parsing methods used in Splunk?
a. ) Constant delimiters
b. ) Regex
c. ) Manual Selecting
d. ) Refreshing data
a & b
Which of the following operators does Splunk support?
a. ) NOT
b. ) OR
c. ) AND
d. ) All the above
d.)
What is used to contain a Nested operation?
a. ) Quotation marks
b. ) Dashes
c. ) Squared brackets
d. ) Parantheses
d.)
Column-based, pie, $ bubble charts are different types of graphs used in the visualization tab T or F
True