Why is splunk used for analyzing machine data?
Can you write down a general regular expression for extracting ip address from logs?
What are the types of search modes supported in splunk?
Why use only splunk?
Give me the syntax of Case command?
Define splunk buckets?
What is the use of sort command?
How do we convert unix time into string and string back to unix time format?
How you will uncompressed the file? How to install Splunk/app using the Splunk Enterprise .tgz file?
Explain how data ages in splunk?
Explain splunk components?
Where does Splunk default configuration file located?
What is slp?
What is stool or how will you troubleshoot splunk configuration files?
What is global file precedence in Splunk?