Which of the following data models are included in the Splunk Common Information Model (CIM) add-on? (Choose all that apply.)
Which of the following data models are included in the Splunk Common Information Model (CIM) add-on? (Choose all that apply.)
The Splunk Common Information Model (CIM) add-on includes several data models to standardize data for various use cases. Alerts, Email, and Databases are specific data models covered under CIM. User permissions, although relevant in other contexts, is not one of the data models specified by the CIM add-on based on the available documentation.
Alerts Application State Authentication Certificates Change Change Analysis CIM Validation (S.o.S) Databases Data Loss Prevention Email Endpoint Event Signatures Interprocess Messaging Intrusion Detection Inventory Java Virtual Machines (JVM) Malware Network Resolution (DNS) Network Sessions Network Traffic Performance Splunk Audit Logs Ticket Management Updates Vulnerabilities Web
ABC its correct
ABC correct
ABC - P273
A,B,C. Slides page 273.
ABC as per this link: https://conf.splunk.com/files/2017/slides/the-power-of-data-normalization-a-look-at-cim-under-the-hood.pdf