nerdexam
Splunk

SPLK-3003 · Question #49

A customer is using regex to whitelist access logs and secure logs from a web server, but only the access logs are being ingested. Which troubleshooting resource would provide insight into why the…

The correct answer is D. tailingprocessor. https://docs.splunk.com/Documentation/Splunk/8.1.1/Data/Troubleshoottheinputprocess

Troubleshooting and Health Checks

Question

A customer is using regex to whitelist access logs and secure logs from a web server, but only the access logs are being ingested. Which troubleshooting resource would provide insight into why the secure logs are not being ingested?

Options

  • Alist monitor
  • Boneshot
  • Cbtprobe
  • Dtailingprocessor

How the community answered

(45 responses)
  • A
    7% (3)
  • B
    16% (7)
  • C
    4% (2)
  • D
    73% (33)

Explanation

https://docs.splunk.com/Documentation/Splunk/8.1.1/Data/Troubleshoottheinputprocess

Topics

#tailingprocessor#whitelist regex#inputs.conf#log monitoring

Community Discussion

No community discussion yet for this question.

Full SPLK-3003 Practice