Exam SPLK-2002 All QuestionsBrowse all questions from this exam
Question 76

When Splunk is installed, where are the internal indexes stored by default?

    Correct Answer: B

    When Splunk is installed, internal indexes are stored by default in the directory SPLUNK_HOME/var/lib. This directory holds various data including the indexed logs and other vital internal information necessary for Splunk's operation.

Discussion
minombrerodrigoOption: B

by default: SPLUNK_HOME/var/lib

RedtonyeahOption: B

B is correct

bobixakaOption: B

Cluster Administration PDF - Page 34: Bucket location defined as homePath, coldPath, & thawedPath of index: • Default: $SPLUNK_HOME/var/lib/splunk/<indexname>/*

wirix25718

page 101 troubleshooting

sammeOption: B

B. SPLUNK_HOME/var/lib