Splunk Core Certified Advanced Power User — Question 69
Which layers are involved in Splunk configuration file layering? (Choose all that apply.)
Answer options
- A. App context
- B. User context
- C. Global context
- D. Forwarder context
Correct answer: A, B, C
Explanation
The correct layers involved in Splunk configuration file layering are App context, User context, and Global context. Forwarder context is not a recognized layer in this configuration structure, making it the incorrect choice.