Exam SPLK-1002 All QuestionsBrowse all questions from this exam
Question 87

What does the Splunk Common Information Model (CIM) add-on include? (Choose all that apply.)

    Correct Answer: B, C

    The Splunk Common Information Model (CIM) add-on includes pre-configured data models and fields and event category tags. The CIM add-on provides a set of field names and tags that help standardize data from different sources, enabling easier searching and reporting. Custom visualizations and automatic data model acceleration are not included in the CIM add-on by default.

Discussion
mimi01Options: BC

I think, B & C

petermuc

see Fundamentals PDF page 273

stikkOptions: BC

B & C is correct

Nicker9Options: BC

D is wrong as per default the datamodels are not accelerated and the cim add-on does not contain visualizations.

teems5ukOptions: BC

B and C (Page 273)Splunk CIM Add-on • Set of 22 pre-configured data models – Fields and event category tags – Least common denominator of a domain of interest • Leverage the CIM so that knowledge objects in multiple apps can co-exist on a single Splunk deployment

RoGrOption: B

P.273 bottom Right: The dat models included in the CIM add-on are configured with data model acceleration turned off. Should be only B I think...

IGoddard90Options: BD

I thought B & D was correct

inkedia3

No data models associated with DM are turned off by default. so D cant be correct

HarrysaOptions: BC

could not find anything on automatic data acceleration but definitely B & C

harrytbbOptions: BC

B & C are correct

jman92Options: BC

Its B & C

ALiZOptions: BC

I think its B & C according to documentation. "The CIM add-on contains a collection of preconfigured data models that you can apply to your data at search time. Each data model in the CIM consists of a set of field names and tags that define the least common denominator of a domain of interest." https://docs.splunk.com/Documentation/CIM/4.19.0/User/Overview#What_data_models_are_included