What are types of field extraction. How to mask a data in either of case?
Where is splunk default configuration stored?
How to locate the place where default splunk configuration is stored?
List out common ports used by splunk?
What commands are included in reporting results category?
Explain how indexer stores various indexes?
Which splunk roles can share the same machine?
What is the Command to change splunkweb port to 9000 via CLI?
Explain types of search modes in splunk?
What is index bucket? What are all stages of buckets?
What are important configuration files in Splunk?
Define calculated fields?
How do we sync and deploy configurational files and updates across multiple deployment servers in a large multi layered clustered?
What is global file precedence in Splunk?
Give a few use cases of knowledge objects.