00:00

QUESTION 6

Adaptive response action history is stored in which index?

Correct Answer: A
Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Install/Indexes

QUESTION 7

At what point in the ES installation process should Splunk_TA_ForIndexes.spl be deployed to the indexers?

Correct Answer: B
Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Install/InstallTechnologyAdd-ons

QUESTION 8

Which of the following threat intelligence types can ES download? (Choose all that apply)

Correct Answer: B
Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Admin/Downloadthreatfeed

QUESTION 9

Which indexes are searched by default for CIM data models?

Correct Answer: D
Reference: https://answers.splunk.com/answers/600354/indexes-searched-by-cim-data-models.html

QUESTION 10

How is it possible to navigate to the list of currently-enabled ES correlation searches?

Correct Answer: A
Reference: https://docs.splunk.com/Documentation/ES/6.1.0/Admin/Listcorrelationsearches