Splunk Cloud Admin Certification
Exam/(363 Questions with 100% Scores)
True/False: Splunk Cloud is hosted and supported by Splunk; one does not
need one's own environment on-premises. - -True
- True/False: Splunk Enterprise typically offers a faster time to value than
Splunk Cloud. - -False
- True/False: Both of the following are available with Splunk Cloud:
* Dedicated Search Heads for investigation and analysis
* Option to scale using a combination of virtual and real infrastructure. - -
True
- True/False: Splunk Cloud does not offer any "real infrastructure" options. -
-False
- True/False: Splunk Cloud can accept any text data as input. - -True
- Match the Splunk Cloud component with customer access to it:
COMPONENT:
Search Head
Indexer
Manager Node
ACCESS:
Hidden and controlled access
Visible and direct access
Hidden and no direct access - -Search Head - Visible and direct access
Indexer - Hidden and no direct access
Manager Node - Hidden and controlled access
- Which of the following are Splunk Cloud customer responsibilities?
Select all that apply.
Forward data to Splunk Cloud
Manage configurations such as sourcetype, index, and contextual details.
Configure Splunk Cloud network for high availability
,Administer and coordinate changes to manage users
Determine data retention and archiving policies
Authenticating users
Configuration and maintenance - -All but:
Configure Splunk Cloud network for high availability
- The two Splunk Cloud licensing options are ______-based and _______-based.
- -Ingestion
Infrastructure
- True/False: Ingestion violations in Splunk Cloud are not enforced; they are
monitored and adjustments to volume or infrastructure resourcing is done on
usage review of consumption and to meet performance challenges and
customer growth. - -True
- True/False: Just like Splunk Enterprise, Splunk Cloud can accept any text
data as input. - -True
- Which two Splunk components are the only two components which can
reside on-premise? - -Universal Forwarder
Intermediate/Heavy forwarder
- True/False: Customers have direct and visible access to search heads. - -
True
- True/False: Customers have direct and visible access to indexers. - -False
(hidden and no direct access)
- True/False: Customers have direct and visible access to the Manager Node
(COM.) - -False
(hidden and controlled access)
- Which of the following is not a benefit of Splunk Cloud?
Select one.
* Troubleshooting support and advice
,* Automated infrastructure deployment
* Automated processing and implementation
* Automated high availability setup
* Regular maintenance and upgrades
* 24/7 NOC - -Automated high availability setup
- True/False: Cloud Search Head offers CLI access. - -False
- True/False: Splunk Cloud does not offer license pooling. - -True
- What app allows for SSL and TLS forwarding unique to the customer
environment? - -Forwarder Credentials App
- What are the two Splunk Cloud Platform Experience designations? - -
Classic and Victoria
- True/False: Hybrid search is not supported in the Victoria Experience. - -
True
- For modular and scripted inputs in the classic experience, these must run
on a separate ______ instance or on-premise _________. - -IDM, heavy
forwarder.
- True/False: For the Victoria Experience, modular and scripted inputs run
directly on the search tier. - -True
- Which Splunk experience offers HEC configuration using Splunk Web and
Admin Config Service (ACS) API? - -Victoria
- True/False: Splunk Cloud does not support UDP. - -True
- True/False: Splunk Cloud customers have no CLI access. - -True
- Which Splunk deployment allows customers to decide what app runs in
their deployment, including unvetted apps? - -On-Prem/Enterprise
(not Cloud)
- True/False: Splunk Cloud contracts cannot include Professional or
Education credits. - -False
- True/False: Splunk Cloud can control access via authentication and IP
address. - -True
, - What are the three authentication protocols offered by Splunk Cloud? - -
Splunk native, SAML, LDAP
- In Splunk Cloud, apps are installed via the ________ and deployed via the
___________. - -Search head, management app
- True/False: Because Splunk Cloud does not accept UDP connections, syslog
data cannot be imported. - -False
- True/False: Splunk Cloud Search Heads can search on-premise and Cloud
indexers by default. - -False
- When Hybrid Search Topology is enabled, what are two very important
limitations? - -* Cannot search multiple Cloud environments
* Cannot search from Cloud Search Head to on-prem Splunk or to another
Splunk Cloud
- What provides the capability to execute a unified search across multiple
Splunk environments (including Splunk Cloud and On-premise?) - -Federated
Search
- True/False: Scheduled search is supported with Hybrid Search. - -False
- True/False: Federated Search is available for Classic customer adoption. - -
True
- True/False: Federated Search allows for both ad-hoc and scheduled
searching. - -True
- True/False: Using Federated Search, we can only use generating SPL
commands. - -True
- Which of the following is NOT performed via Splunk Cloud Search Heads?
Select one.
* Install and manage apps
* Define inputs and configure parsing
* Create and manage indexes
* Manage knowledge objects
* Integrate with LDAP/SAML
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller Victorious23. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $20.49. You're not tied to anything after your purchase.