CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 37: SPLK-5001: Splunk Certified Cybersecurity Defense Analyst

When threat hunting for outliers in Splunk, which of the following SPL pipelines would filter for users with over a thousand occurrences?

Nội dung câu hỏi

When threat hunting for outliers in Splunk, which of the following SPL pipelines would filter for users with over a thousand occurrences?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. | sort by user | where count > 1000
  2. B. | stats count by user | where count > 1000 | sort - count — đáp án hiện tại
  3. C. | top user
  4. D. | stats count(user) | sort - count | where count > 1000

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề