SPLK-5001 · Question #77
A user wants to view only the use cases for which the Splunk instance has all of the supporting source types to implement. In Splunk Security Essentials, what operation needs to happen first?
The correct answer is A. Data Inventory. Before you can filter use cases by which source types you actually have, Splunk Security Essentials must first inventory your data. The Data Inventory operation scans and catalogs all source types present in your environment; only once that inventory exists can SSE determine…
Question
A user wants to view only the use cases for which the Splunk instance has all of the supporting source types to implement. In Splunk Security Essentials, what operation needs to happen first?
Options
- AData Inventory
- BAnalytic Advisor
- CData Availability
- DContent Mapping
How the community answered
(54 responses)- A93% (50)
- B4% (2)
- C2% (1)
- D2% (1)
Explanation
Before you can filter use cases by which source types you actually have, Splunk Security Essentials must first inventory your data. The Data Inventory operation scans and catalogs all source types present in your environment; only once that inventory exists can SSE determine which use cases have full support and let you view only those.
Topics
Community Discussion
No community discussion yet for this question.