Splunk Core Certified Consultant — Question 28

When is data deleted from a Splunk Cloud index?

Answer options

Correct answer: A

Explanation

Data in a Splunk Cloud index is deleted when buckets roll to the frozen state and there is no archive defined to retain the data. The other options describe actions that do not result in the automatic deletion of data from the index, such as using the GUI or specific commands that require additional configurations.