A Splunk Enterprise Certified Architect has an exhaustive comprehension of Splunk Deployment Methodology and best-rehearses for arranging, information accumulation, and measuring for an appropriated arrangement and can oversee and investigate a standard circulated sending with indexer and search head grouping. This affirmation shows a person’s capacity to convey, oversee, and investigate complex Splunk Enterprise situations.
Why Choose Exams4sure:
SPLK-2002 Questions Answers:
Question No 1:
The guidance Splunk gives for estimating size on for syslog data is 50% of original data size. How does this divide between files in the index?
A. rawdata is: 10%, tsidx is: 40%
B. rawdata is: 15%, tsidx is: 35%
C. rawdata is: 35%, tsidx is: 15%
D. rawdata is: 40%, tsidx is: 10%
Question No 2:
Which of the following tasks should the architect perform when building a deployment plan? (Select all that apply.)
A. Use case checklist.
B. Install Splunk apps.
C. Inventory data sources.
D. Review network topology.
Question No 3:
What is the default log size for Splunk internal logs?
B. 20 MB
Question No 4:
The KV store forms its own cluster within a SHC. What is the maximum number of SHC members KV store will form?
Question No 5:
Which of the following commands is used to clear the KV store?
A. splunk clean kvstore
B. splunk clear kvstore
C. splunk delete kvstore
D. splunk reinitialize kvstore