exam questions

Exam SPLK-1003 All Questions

View all questions & answers for the SPLK-1003 exam

Exam SPLK-1003 topic 1 question 28 discussion

Actual exam question from Splunk's SPLK-1003
Question #: 28
Topic #: 1
[All SPLK-1003 Questions]

How does the Monitoring Console monitor forwarders?

  • A. By pulling internal logs from forwarders.
  • B. By using the forwarder monitoring add-on.
  • C. With internal logs forwarded by forwarders.
  • D. With internal logs forwarded by deployment server.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Josi12
Highly Voted 3 years, 5 months ago
Best answer is C. MC, which is search head of search heads relies on internal logs forwarded by forwarders.
upvoted 17 times
ucsdmiami2020
2 years ago
Agreed C. Quoting the following Splunk URL reference https://docs.splunk.com/Documentation/Splunk/8.2.2/DMC/DMCprerequisites "Monitoring Console setup prerequisites. Forward internal logs (both $SPLUNK_HOME/car/log/splunk and $SPLUNK_HOME/var/log/introspection) to indexers from all other components. Without this step, many dashboards will lack data."
upvoted 2 times
...
...
Asami
Highly Voted 3 years, 3 months ago
C. With internal logs forwarded by forwarders.
upvoted 6 times
...
uptightuptight
Most Recent 6 months ago
Selected Answer: C
Uses internal logs from forwarders
upvoted 3 times
...
Mando22
1 year, 1 month ago
The correct answer is C
upvoted 1 times
...
thissiteisgreat
1 year, 6 months ago
Selected Answer: C
C......
upvoted 2 times
...
Marco63
1 year, 6 months ago
Selected Answer: C
uses internal logs from forwarders
upvoted 1 times
...
Apis
1 year, 10 months ago
Selected Answer: C
C is correct
upvoted 1 times
...
loky0
2 years, 2 months ago
C. P109 Data admin pdf
upvoted 2 times
...
Mimi88
3 years ago
Ans. C. See Forwarder Monitoring with Monitoring Console section of Data Administration PDF
upvoted 5 times
...
Sammy33
3 years, 5 months ago
Correct answer is C, based on the Data Admin Power Point from Splunk Training
upvoted 5 times
...
giubal
3 years, 6 months ago
I'm not really sure but the answer could be C "The Monitoring Console dashboards use data from Splunk Enterprise's internal log files" https://docs.splunk.com/Documentation/Splunk/latest/DMC/DMCoverview
upvoted 5 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago