What do you mean by deployer in splunk?
Can search results be used to change the existing search?
What do you mean by summary index?
How you will uncompressed the file? How to install Splunk/app using the Splunk Enterprise .tgz file?
How data ages in splunk?
Explain the use of top command in splunk?
What is difference between source & source type?
How can you troubleshoot splunk performance issues?
What is the output lookup command?
What are splunk buckets? Explain the bucket lifecycle?
What is the use of replacing command?
How to Create new app from templet?
What is the command to get list of configuration files in Splunk?
What features are not available in splunk free?
What is join command and what are various flavours of join command?