SPLK-1002 Exam QuestionsBrowse all questions from this exam

SPLK-1002 Exam - Question 63


Which of the following data models are included in the Splunk Common Information Model (CIM) add-on? (Choose all that apply.)

Show Answer
Correct Answer: ABC

The Splunk Common Information Model (CIM) add-on includes several data models to standardize data for various use cases. Alerts, Email, and Databases are specific data models covered under CIM. User permissions, although relevant in other contexts, is not one of the data models specified by the CIM add-on based on the available documentation.

Discussion

6 comments
Sign in to comment
allansid
May 9, 2023

Alerts Application State Authentication Certificates Change Change Analysis CIM Validation (S.o.S) Databases Data Loss Prevention Email Endpoint Event Signatures Interprocess Messaging Intrusion Detection Inventory Java Virtual Machines (JVM) Malware Network Resolution (DNS) Network Sessions Network Traffic Performance Splunk Audit Logs Ticket Management Updates Vulnerabilities Web

Sartarus
Mar 3, 2023

ABC its correct

Kool_Kid
Jun 20, 2023

A,B,C. Slides page 273.

mardaOptions: ABC
Aug 4, 2024

ABC - P273

adamscaOptions: ABC
Aug 18, 2024

ABC correct

IxlJustinlxl
Jul 19, 2023

ABC as per this link: https://conf.splunk.com/files/2017/slides/the-power-of-data-normalization-a-look-at-cim-under-the-hood.pdf