When configuring monitor inputs with whitelists or blacklists, what is the supported method of filtering the lists?
In addition to single, non-clustered Splunk instances, what else can the deployment server push apps to?
An index stores its data in buckets. Which default directories does Splunk use to store buckets? (Choose all that apply.)
The CLI command splunk add forward-server indexer:
which configuration file?