Splunk Core Certified Power User — Question 198
Which of the following data models are included in the Splunk Common Information Model (CIM) add-on? (Choose all that apply.)
Answer options
- A. Alerts
- B. Email
- C. Databases
- D. User permissions
Correct answer: A, B, C
Explanation
The correct answers are Alerts, Email, and Databases, as these are all included in the Splunk CIM add-on. User permissions, however, is not a data model within CIM, which focuses on data types relevant for analysis and reporting.