Un-Answered Questions { Splunk }

Why use only splunk?

167


What are the unique benefits of getting data into a splunk instance via forwarders?

139


How to exclude some events from being indexed by splunk?

257


Explain search factor (sf) & replication factor (rf)?

241


What is the difference between search time and index time field extractions?

125


What are the defaults fields for every event in splunk?

142


Explain how data ages in splunk?

130


Why is splunk used for analyzing machine data?

125


Explain ‘license violation’ from splunk perspective.

280


Explain the splunk architecture?

125


What is the use of license master in splunk?

166


Explain search factor (sf)?

145


Why use only splunk? Why can’t I go for something that is open source?

136


Differentiate between inputlookup & outputlookup commands.

227


What are the different options while setting up alerts?

144