What is a quick, comprehensive way to learn what data is present in a Splunk deployment?

Posted by: Pdfprep Category: SPLK-1001 Tags: , ,

What is a quick, comprehensive way to learn what data is present in a Splunk deployment?
A . Review Splunk reports
B . Run ./splunk show
C . Click Data Summary in Splunk Web
D . Search index=* sourcetype=* host=*

Answer: C

Explanation:

Reference: https://docs.splunk.com/Documentation/Splunk/8.0.3/InheritedDeployment/Yourdata

Leave a Reply

Your email address will not be published.