What event-processing pipelines are used to process data for indexing? (select all that apply)
What is the valid option for a [monitor] stanza in inputs.conf?
The Splunk administrator wants to ensure data is distributed evenly amongst the indexers. To do this, he runs
the following search over the last 24 hours:
index=*
What field can the administrator check to see the data distribution?
Which of the following are methods for adding inputs in Splunk? (select all that apply)