The Splunk Common Information Model (CIM) is a collection of what type of knowledge object?
What commands can be used to group events from one or more data sources?
What is the purpose of a calculated field?
Which of the following can a field alias be applied to?