Splunk Interview Questions
Questions Answers Views Company eMail

Explain about Splunk architecture and various stages?

178

What are types of field extraction. How to mask a data in either of case?

138

What is join command and what are various flavours of join command?

159

What are the Types Of Splunk Forwarder?

117

What are the types of search modes supported in splunk?

130

How do we sync and deploy configurational files and updates across multiple deployment servers in a large multi layered clustered?

133

Which command is used to the “filtering results” category- explain?

147

What is null queue?

169

How can you exclude some events from being indexed in Splunk?

149

How do we find total number of host or source type reporting splunk instance. Report should consider host across the cluster?

129

How to Rollback your splunk web configuration bundle to previous version?

148

How you will uncompressed the file? How to install Splunk/app using the Splunk Enterprise .tgz file?

136

What is the difference between Splunk apps and add-ons?

158

What would you use to edit contents of the file in Linux? Describe some of the important commands mode in vi editor?

152

What is the command to stop and start Splunk service?

137


Post New Splunk Questions

Un-Answered Questions { Splunk }

Explain search factor (sf)?

139


Define splunk db connect?

144


Which is latest splunk version in use?

163


Explain the difference between search head pooling and search head clustering?

138


Explain the output lookup command?

148






Where does splunk default configuration is stored?

175


Explain search factor (sf) & replication factor (rf)?

235


What do you mean by splunk indexer?

139


What is the difference between splunk app and add-on?

448


What is stool or how will you troubleshoot splunk configuration files?

134


What is a lookup command?

127


What is the role of Deployment server?

164


What do you mean by summary index?

135


When to use auto_high_volume in splunk?

187


How do you log in to a remote Unix box using ssh?

156