SPLK-1001 Creating Reports, Dashboards and Visualizations • 40 Questions
40 SPLK-1001 Creating Reports, Dashboards and Visualizations practice questions with answers and explanations. Free, no signup.
You are a Splunk administrator for a large e-commerce company. The marketing team has a dashboard that displays daily sales metrics, including revenue, number of transactions, and average order value. The dashboard is built using a single search that runs a 'timechart' command across all events. Recently, the dashboard has been timing out and failing to load during peak hours (10 AM - 2 PM) when traffic is highest. The team needs the dashboard to be available with minimal latency. You have the following options:
A. Reduce the time range on the dashboard to the last hour instead of the default last 24 hours. B. Create a summary index that pre-aggregates the sales metrics every hour and modify the dashboard to search this summary index. C. Increase the search time limit in the Splunk settings to allow the search to run longer. D. Split the single search into multiple smaller searches, each for a different metric, and run them concurrently on separate panels.
Which option best addresses the performance issue while maintaining data accuracy?
Choose an answer to begin — your selection is scored in the full session.
40 questions · instant feedback and full explanations after every question.