SPLK-1001 Exam QuestionsBrowse all questions from this exam

SPLK-1001 Exam - Question 66


Which search matches the events containing the terms `error` and `fail`?

Show Answer
Correct Answer: AB

The search 'index=security Error Fail' matches events containing both the terms 'error' and 'fail'. In Splunk searches, multiple terms are combined using 'AND' by default, hence it will capture events containing both terms 'Error' and 'Fail', casing does not matter in Splunk searches.

Discussion

9 comments
Sign in to comment
BrynnMLOption: A
Jul 4, 2023

A is correct because the Boolean expression "AND" is implied between 2 search terms. (so doesn't need to be written here

hashed_pony
Dec 8, 2023

Admin please fix these errors. At this point I'm scared of failing the exam because you keep flagging the wrong answers as the right ones.

Khuli_DollyOption: A
Sep 13, 2023

Admin, please fix these errors

SlyLampOption: A
Sep 8, 2022

The correct answer is A

tandelmanish34Option: A
Oct 29, 2022

The correct answer should be A

InimitableOption: A
Mar 6, 2023

A because this search is not case sensitive.

foxx99Option: A
Oct 12, 2022

A is correct

SunsilOption: A
Dec 19, 2022

A is correct

Archu88Option: A
Feb 4, 2023

A looks correct