Splunk Core Certified Power User — Question 198

Which of the following data models are included in the Splunk Common Information Model (CIM) add-on? (Choose all that apply.)

Answer options

Correct answer: A, B, C

Explanation

The correct answers are Alerts, Email, and Databases, as these are all included in the Splunk CIM add-on. User permissions, however, is not a data model within CIM, which focuses on data types relevant for analysis and reporting.