Which is the least permissive role required to modify default deep dives?
Which of the following is a recommended best practice for ITSI installation?
Which of the following is a characteristic of base searches?
Which of the following is a good use case regarding defining entities for a service?
Which index will contain useful error messages when troubleshooting ITSI issues?
Which of the following best describes a default deep dive?
What is an episode?
When working with a notable event group in the Notable Events Review dashboard, which of the following can be set at the individual or group level?
To use Adaptive Threshholding, what is the minimum requirement for a set of KPI data?
When creating a custom deep dive, what color are services/KPIs in maintenance mode within the topology view?
How should entities be handled during the data audit phase of requirements gathering?
Which of the following is a problem requiring correction in ITSI?
Which of the following describes enabling smart mode for an aggregation policy?
When installing ITSI to support a Distributed Search Architecture, which of the following items apply? (Choose all that apply.)
Which of the following items describe ITSI Backup and Restore functionality? (Choose all that apply.)
When must a service define entity rules?
Which of the following is the best use case for configuring a Multi-KPI Alert?
Which anomaly detection algorithm is included within ITSI?
In distributed search, which components need to be installed on instances other than the search head?
Which ITSI components are required before a module can be created?
When deploying ITSI on a distributed Splunk installation, which component must be installed on the search head(s)?
When troubleshooting KPI search performance, which search names in job activity identify base searches?
How can admins manually control groupings of notable events?
Which views would help an analyst identify that a memory usage KPI is going critical? (select all that apply)
Which of the following is a best practice for identifying the most effective services with which to start an iterative ITSI deployment?
Besides creating notable events, what are the default alert actions a correlation search can execute? (Choose all that apply.)
Which capabilities are enabled through “teams”?