What is the difference between splunk app and splunk add on?
Why should we use splunk alert? What are the different options while setting up alerts?
What do you mean by deployer in splunk?
What are the defaults fields for every event in splunk?
Explain splunk components?
What would you use to view contents of a large file? How to copy/remove file? How to look for help on a Linux?
What is splunk db connect?
Distinguish between splunk apps and add-ons?
Name splunk alternatives?
What are three versions if splunk?
What commands are included in reporting results category?
What is the output lookup command?
Give a few use cases of knowledge objects.
What is difference between stats and timechart command?
What is the use of instant pivot in splunk?