Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
Location Chicago IL, USA

Exam SPLK-1001 topic 1 question 83 discussion

Actual exam question from Splunk's SPLK-1001
Question #: 83
Topic #: 1
[All SPLK-1001 Questions]

Which of the following describes lookup files?

  • A. Lookup fields cannot be used in searches.
  • B. Lookups contain static data available in the index.
  • C. Lookups add more fields to results returned by a search.
  • D. Lookups pull data at index time and add them to search results.
Show Suggested Answer Hide Answer

Suggested Answer: B
Reference:
https://docs.splunk.com/Documentation/Splunk/7.3.1/Knowledge/Aboutlookupsandfieldactions

Comments

parelo
5 months ago
Lookup table data is not indexed Lookup table files are files that contain a lookup table. A standard lookup pulls fields out of this table and adds them to your events when corresponding fields in the table are matched in your events.
upvoted 1 times
...
stallone
4 months ago
C is correct.
upvoted 1 times
...
alisyed
1 month, 1 week ago
C is correct, Page 185 & 186 pdf file
upvoted 3 times
...
bigmills
1 week, 5 days ago
C for sure
upvoted 1 times
...
kr57
2 days, 7 hours ago
C is correct
upvoted 1 times
...

SaveCancel