Discuss about the sequence in which splunk upgrade can be done in a clustered environment?
What is lookup command?
What are the components of splunk?
What is Search Factor (SF) and Replication Factor (RF) in Splunk?
Which role can create data model?
What are the disadvantages of using splunk?
Explain the output lookup command?
What are most important configuration files of splunk or can you tell name of few important configuration files in splunk?
Why can’t I go for something that is open source other than splunk?
What is the difference between splunk app and splunk add on?
Give me the syntax of Case command?
What is the use of splunk alert?
What is splunk app? What is the difference between splunk app and add-on?
Explain data models and pivot?
Explain splunk rest api?