Share the latest information you need to know for the splk-2001 exam and provide the latest exam questions and answers
Certification Discontinued
Expand your options for building apps with the Splunk web framework.
Increase your knowledge and understanding of Splunk and what you can do with it. Become proficient in advanced behaviors and visualizations. Optimize your planning, creation and packaging of apps and REST endpoints.
This track is designed for app developers looking to refine their expertise in developing specifically for the Splunk platform.
Take your career to the next level and develop for the platform you already know so well. Dig deeper into the ins and outs of the Splunk platform.
Expand your expertise to build customized solutions for your specific data needs with the Splunk platform.
Maximize your impact for any Splunk platform customer. Develop for both internal and external users on the Splunk Enterprise or Splunk Cloud platforms.
Question 1:
What must be done when calling the serviceNS endpoint?
A. Authenticate with an admin user.
B. Specify the user and app context in the URI.
C. Authenticate with the user of the required context.
D. Pass the user and app context in the request payload.
Correct Answer: B
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/RESTUM/RESTusing
Question 2:
Which of the following options would be the best way to identify processor bottlenecks of a search?
A. Using the REST API.
B. Using the search job inspector.
C. Using the Splunk Monitoring Console.
D. Searching the Splunk logs using index=" internal".
Correct Answer: C
Question 3:
Which of the following ensures that quotation marks surround the value referenced by the token?
A. $token_name|s$
B. "$token_name$"
C. ($token_name$)
D. \"$token_name$\"
Correct Answer: A
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/Viz/tokens
Question 4:
Which Splunk REST endpoint is used to create a KV store collection?
A. /storage/collections
B. /storage/kvstore/create
C. /storage/collections/config
D. /storage/kvstore/collections
Correct Answer: A
Reference: https://dev.splunk.com/enterprise/docs/developapps/manageknowledge/kvstore/ usetherestapitomanagekv/
Question 5:
Which of the following are security best practices for Splunk app development? (Select all that apply.)
A. Store passwords in clear text in .conf files.
B. Implement security in software development lifecycle.
C. Manually test application with the controls listed in the OWASP Security Testing Guide.
D. Use a dynamic scanner such as OWASP ZAP to scan web application components for vulnerabilities.
Correct Answer: CD
Reference: https://dev.splunk.com/enterprise/docs/developapps/testvalidate/securitybestpractices/
Question 6:
When added to an app\'s default.meta file, which of the following makes one of its views available to other apps?
A. export = app
B. export = none
C. export = view
D. export = system
Correct Answer: D
Reference: https://dev.splunk.com/enterprise/docs/developapps/manageknowledge/ setpermissionsforobjects/
Question 7:
To delete the record with a _key value of smith from the sales collection, a DELETE request should be sent to which REST endpoint?
A. /storage/collections/sales/smith
B. /storage/kvstore/data/sales/smith
C. /storage/collections/data/sales/smith
D. /storage/kvstore/collections/sales/smith
Correct Answer: C
Question 8:
Which of the following statements define a namespace?
A. The namespace is a combination of the user and the app.
B. The namespace is a combination of the user, the app, and the role.
C. The namespace is a combination of the user, the app, the role, and the sharing level.
D. The namespace is a combination of the user, the app, the role, the sharing level, and the permissions.
Correct Answer: A
Question 9:
Which of the following is a customization option for the Open in Search panel link button?
A. Display the refresh time.
B. Show the Export Results button.
C. Show link buttons at the bottom of a panel.
D. Define an alternative search or target view to use.
Correct Answer: D
Question 10:
When using the Splunk REST API, which of the following containers is/are included in the Atom Feed response? (Select all that apply.)
A.
B.
C.
D.
Correct Answer: BC
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/RESTUM/RESTusing
Question 11:
Which of the following search commands can be used to perform statistical queries on indexed fields in TSIDX files?
A. stats
B. tstats
C. tscollect
D. transaction
Correct Answer: B
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/SearchReference/Tstats
Question 12:
Which items below are configured in inputs.conf? (Select all that apply.)
A. A modular input written in Python.
B. A file input monitoring a JSON file.
C. A custom search command written in Python.
D. An HTTP Event Collector as receiver of data from an app.
Correct Answer: AD
Question 13:
What predefined drilldown tokens are available specifically for trellis layouts? (Select all that apply.)
A. trellis.Xaxis
B. trellis.Yaxis
C. trellis.name
D. trellis.value
Correct Answer: CD
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/Viz/VisualizationTrellis
Question 14:
Which event handler uses the element to support pan and zoom functionality?
A. Visualization event handler
B. Form input event handler
C. Condition event handler
D. Search event handler
Correct Answer: A
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/Viz/EventHandlerReference
Question 15:
Which type of command is tstats?
A. Generating
B. Transforming
C. Centralized streaming
D. Distributable streaming
Correct Answer: A
Reference: https://docs.splunk.com/Documentation/Splunk/8.1.2/SearchReference/Tstats
The Splk-2001 dumps exam material contains 70 latest exam questions and answers. Use https://www.leads4pass.com/splk-2001.html to download the complete material to help candidates successfully pass the Splunk Certified Developer exam.