Which of these generates a summary index containing a count of events by productid?
Which of these generates a summary index containing a count of events by productid?
The correct command to generate a summary index containing a count of events by productid is 'sistats count by productId'. The 'sistats' command is the summary indexing version of the 'stats' command and is specifically used for creating summary indexes.
Correct answer is C. The sistats command is one of several commands that you can use to create summary indexes. The sistats command is the summary indexing version of the stats command. See https://docs.splunk.com/Documentation/Splunk/latest/SearchReference/Sistats