SPLUNK SPLK 2002
Q: 1
A search head has successfully joined a single site indexer cluster. Which command is used to
configure the same search head to join another indexer cluster?
Options
Q: 2
metrics. log is stored in which index?
Options
Q: 3
When adding or rejoining a member to a search head cluster, the following error is displayed:
Error pulling configurations from the search head cluster captain; consider performing a destructive
configuration resync on this search head cluster member.
What corrective action should be taken?
Options
Q: 4
By default, what happens to configurations in the local folder of each Splunk app when it is deployed
to a search head cluster?
Options
Q: 5
A customer currently has many deployment clients being managed by a single, dedicated
deployment server. The customer plans to double the number of clients.
What could be done to minimize performance issues?
Options
Q: 6
Which CLI command converts a Splunk instance to a license slave?
Options
Q: 7
What information is needed about the current environment before deploying Splunk? (select all that
apply)
Options
Q: 8
Splunk Enterprise platform instrumentation refers to data that the Splunk Enterprise deployment
logs in the _introspection index. Which of the following logs are included in this index? (Select all
that apply.)
Options
Q: 9
How many cluster managers are required for a multisite indexer cluster?
Options
Q: 10
Which search head cluster component is responsible for pushing knowledge bundles to search peers,
replicating configuration changes to search head cluster members, and scheduling jobs across the
search head cluster?
Options
Question 1 of 10