Splunk Core Certified Advanced Power User — Question 173

In which scenario would a Splunk Administrator want to enable data integrity check when creating an index?

Answer options

Correct answer: D

Explanation

The correct answer is D because enabling data integrity checks ensures that the data remains unchanged, which is essential for accurate auditing and compliance. Options A, B, and C pertain to different aspects of system integrity and security but do not directly relate to the integrity of the data itself.