QuestionQ38

Splunk Troubleshooting Methods and Tools

How can internal logging levels be modified in a Splunk environment to troubleshoot an issue?

Choose three
  • A Edit log-local.cfg.
  • B Use the Monitoring Console (MC).
  • C Use Splunk Web.
  • D Use Splunk command line.
Explanation

Splunk internal logger categories support levels such as FATAL, WARN, INFO, and DEBUG. Administrators can set them through the local logging configuration (log-local.cfg), through Splunk Web’s server-logging controls, or with the Splunk CLI set log-level command. The Monitoring Console is used to observe and investigate deployment health rather than to set internal logger levels.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!