When configuring monitor inputs with whitelists or blacklists, what is the supported method of filtering the lists?
Which Splunk component(s) would break a stream of syslog inputs into individual events? (select all that apply)
Which of the following configuration files are used with a universal forwarder? (Choose all that apply.)
After automatic load balancing is enabled on a forwarder, the time interval for switching indexers can be updated by using which of the following attributes?
Which Splunk indexer operating system platform is supported when sending logs from a Windows universal forwarder?