SPLK-1001 Using Fields and Lookups • Set 6
SPLK-1001 Using Fields and Lookups Practice Test 6 — 15 questions with explanations. Free, no signup.
A Splunk admin notices that a lookup is not matching fields correctly. The lookup file has a header row with field names. The search uses `lookup usernames.csv user_id OUTPUT username`. Some events have `user_id` values that exist in the lookup but no match occurs. What is the most likely cause?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.