Splunk Enterprise Security Certified Admin — Question 56
After installing Enterprise Security, the distributed configuration management tool can be used to create which app to configure indexers?
Answer options
- A. Splunk_DS_ForIndexers.spl
- B. Splunk_ES_ForIndexers.spl
- C. Splunk_SA_ForIndexers.spl
- D. Splunk_TA_ForIndexers.spl
Correct answer: D
Explanation
The correct answer is D, as Splunk_TA_ForIndexers.spl is specifically designed for configuring indexers within the Enterprise Security framework. Options A, B, and C do not pertain to the configuration of indexers, making them incorrect choices for this purpose.