exam questions

Exam SPLK-2002 All Questions

View all questions & answers for the SPLK-2002 exam

Exam SPLK-2002 topic 1 question 37 discussion

Actual exam question from Splunk's SPLK-2002
Question #: 37
Topic #: 1
[All SPLK-2002 Questions]

A new Splunk customer is using syslog to collect data from their network devices on port 514. What is the best practice for ingesting this data into Splunk?

  • A. Configure syslog to send the data to multiple Splunk indexers.
  • B. Use a Splunk indexer to collect a network input on port 514 directly.
  • C. Use a Splunk forwarder to collect the input on port 514 and forward the data.
  • D. Configure syslog to write logs and use a Splunk forwarder to collect the logs.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
qtygbapjpesdayazko
2 weeks, 1 day ago
Selected Answer: D
D. Configure syslog to write logs and use a Splunk forwarder to collect the logs.
upvoted 1 times
...
Vale5M
3 months, 1 week ago
Answer is D. Show Data Admin slide 147
upvoted 2 times
...
RedYeti
1 year, 1 month ago
Selected Answer: D
Answer D
upvoted 2 times
...
david88f
1 year, 7 months ago
Answer is: D
upvoted 3 times
...
demarko
2 years, 6 months ago
https://wiki.splunk.com/Community:BestPracticeForConfiguringSyslogInput
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago