1. Home
  2. Splunk
  3. SPLK-1003 Exam Syllabus

Splunk SPLK-1003 Exam Syllabus

Start Free SPLK-1003 Exam Practice After Reviewing the Topics

Before starting your SPLK-1003 exam preparation, it is recommended to review the complete Splunk Enterprise Certified Admin exam syllabus and carefully go through the exam objectives listed below. Once you understand the exam structure and objectives, you should practice using our free SPLK-1003 questions. We also provide premium SPLK-1003 practice test, fully updated according to the latest exam objectives, to help you accurately assess your preparedness for the actual exam.

Splunk SPLK-1003 Exam Objectives

Section Weight Objectives
Splunk Admin Basics 5% 1.1 Identify Splunk components
License Management 5% 2.1 Identify license types
2.2 Understand license violations
Splunk Configuration Files 5% 3.1 Describe Splunk configuration directory structure
3.2 Understand configuration layering
3.3 Understand configuration precedence
3.4 Use btool to examine configuration settings
Splunk Indexes 10% 4.1 Describe index structure
4.2 List types of index buckets
4.3 Check index data integrity
4.4 Describe indexes.conf options
4.5 Describe the fishbucket
4.6 Apply a data retention policy
Splunk User Management 5% 5.1 Describe user roles in Splunk
5.2 Create a custom role
5.3 Add Splunk users
Splunk Authentication Management 5% 6.1 Integrate Splunk with LDAP
6.2 List other user authentication options
6.3 Describe the steps to enable Multifactor Authentication in Splunk
Getting Data In 5% 7.1 Describe the basic settings for an input
7.2 List Splunk forwarder types
7.3 Configure the forwarder
7.4 Add an input to UF using CLI
Official Information https://www.splunk.com/en_us/training/certification-track/splunk-enterprise-certified-admin.html