Splunk Core Certified User — Question 136
Three basic components of Splunk are (Choose three.):
Answer options
- A. Forwarders
- B. Deployment Server
- C. Indexer
- D. Knowledge Objects
- E. Index
- F. Search Head
Correct answer: A, C, F
Explanation
The correct components of Splunk are Forwarders, Indexer, and Search Head, as they are essential for data ingestion, storage, and query capabilities. Deployment Server and Knowledge Objects, while important, do not serve as core components, and Index is a term that refers more to the data structure rather than a standalone component.