User role inheritance allows what to be inherited from the parent role? (select all that apply)
Which of the following are methods for adding inputs in Splunk? (select all that apply)
Which of the following Splunk components require a separate installation package?
What conf file needs to be edited to set up distributed search groups?
In this source definition the MAX_TIMESTAMP_LOOKHEAD is missing. Which value would fit best?
Event example: