Splunk Core Certified Consultant — Question 11

How are HTTP Event Collector (HEC) tokens configured in a managed Splunk Cloud environment?

Answer options

Correct answer: B

Explanation

The correct answer is B because a token is specifically generated when setting up a HEC input, which is essential for proper data ingestion. Option A is incorrect since it suggests any token is acceptable, which can lead to data misplacement. Option C is wrong as it implies obtaining tokens from developers instead of configuring them during input setup, and option D is not accurate since HEC tokens should be generated internally without needing support cases.