Question 1 of 1010%
Data Models and Best Practicesmedium

A security analyst needs to create a data model for authentication logs that allows both event counts and average duration calculations. The data model should support fast search performance. Which approach best follows Splunk best practices for data model design?

Select one: