How you will uncompressed the file? How to install Splunk/app using the Splunk Enterprise .tgz file?
Explain search factor (sf)?
Which splunk roles can share the same machine?
What are the disadvantages of using splunk?
Explain configuration file Precedence in Splunk and discuss some of the important configuration files?
Name splunk alternatives?
What are the default fields in Splunk?
Define calculated fields?
What command is used to enable and disable splunk to boot start?
What is a replace command?
What is sos?
What are the types of search modes supported in splunk?
Explain the splunk architecture?
What are the formats in which search result be exported?
What are the unique benefits of getting data into a splunk instance via forwarders?