| Exam Name: | Splunk Enterprise Certified Architect | ||
| Exam Code: | SPLK-2002 Dumps | ||
| Vendor: | Splunk | Certification: | Splunk Enterprise Certified Architect |
| Questions: | 202 Q&A's | Shared By: | georgie |
A monitored log file is changing on the forwarder. However, Splunk searches are not finding any new data that has been added. What are possible causes? (select all that apply)
Which of the following statements describe a Search Head Cluster (SHC) captain? (Select all that apply.)
A customer has installed a 500GB Enterprise license. They also purchased and installed a 300GB, no enforcement license on the same license master. How much data can the customer ingest before the search is locked out?