1. Home
  2. Splunk
  3. SPLK-2002 Exam Syllabus

Splunk SPLK-2002 Exam Syllabus

Start Free SPLK-2002 Exam Practice After Reviewing the Topics

Before starting your SPLK-2002 exam preparation, it is recommended to review the complete Splunk Enterprise Certified Architect exam syllabus and carefully go through the exam objectives listed below. Once you understand the exam structure and objectives, you should practice using our free SPLK-2002 questions. We also provide premium SPLK-2002 practice test, fully updated according to the latest exam objectives, to help you accurately assess your preparedness for the actual exam.

Splunk
Vendor
SPLK-2002
Exam Code
205
Total Questions
20
Total Exam Domains

START FREE SPLK-2002 EXAM PRACTICE

NO SIGNUP REQUIRED  •  100% FREE TO START

SPLK-2002 EXAM QUESTIONS

Splunk SPLK-2002 Exam Objectives

Section 1: 1.0 Introduction
Weight:
2%
1.1 Describe a deployment plan
1.2 Define the deployment process
Section 2: 2.0 Project Requirements
Weight:
5%
2.1 Identify critical information about environment, volume, users, and requirements
2.2 Apply checklists and resources to aid in collecting requirements
Section 3: 3.0 Infrastructure Planning: Index Design
Weight:
5%
3.1 Understand design and size indexes
3.2 Estimate non-smart store related storage requirements
3.3 Identify relevant apps
Section 4: 4.0 Infrastructure Planning: Resource Planning
Weight:
7%
4.1 List sizing considerations
4.2 Identify disk storage requirements
4.3 Define hardware requirements for various Splunk components
4.4 Describe ES considerations for sizing and topology
4.5 Describe ITSI considerations for sizing and topology
4.6 Describe security, privacy, and integrity measures
Section 5: 5.0 Clustering Overview
Weight:
5%
5.1 Identify non-smart store related storage and disk usage requirements
5.2 Identify search head clustering requirements
Section 6: 6.0 Forwarder and Deployment Best Practices
Weight:
6%
6.1 Identify best practices for forwarder tier design
6.2 Understand configuration management for all Splunk components, using Splunkdeployment tools
Section 7: 7.0 Performance Monitoring and Tuning
Weight:
5%
7.1 Use limits.conf to improve performance
7.2 Use indexes.conf to manage bucket size
7.3 Tune props.conf
7.4 Improve search performance
Section 8: 8.0 Splunk Troubleshooting Methods and Tools
Weight:
5%
8.1 Splunk diagnostic resources and tools
Section 9: 9.0 Clarifying the Problem
Weight:
5%
9.1 Identify Splunk’s internal log files
9.2 Identify Splunk’s internal indexes
Section 10: 10.0 Licensing and Crash Problems
Weight:
5%
10.1 License issues
10.2 Crash issues
Section 11: 11.0 Configuration Problems
Weight:
5%
11.1 Input issues
Section 12: 12.0 Search Problems
Weight:
5%
12.1 Search issues
12.2 Job inspector
Section 13: 13.0 Deployment Problems
Weight:
5%
13.1 Forwarding issues
13.2 Deployment server issues
Section 14: 14.0 Large-scale Splunk Deployment Overview
Weight:
5%
14.1 Identify Splunk server roles in clusters
14.2 License Master configuration in a clustered environment
Section 15: 15.0 Single-site Indexer Cluster
Weight:
5%
15.1 Splunk single-site indexer cluster configuration
Section 16: 16.0 Multisite Indexer Cluster
Weight:
5%
16.1 Splunk multisite indexer cluster overview
16.2 Multisite indexer cluster configuration
16.3 Cluster migration and upgrade considerations
Section 17: 17.0 Indexer Cluster Management and Administration
Weight:
7%
17.1 Indexer cluster storage utilization options
17.2 Peer offline and decommission
17.3 Master app bundles
17.4 Monitoring Console for indexer cluster environment
Section 18: 18.0 Search Head Cluster
Weight:
5%
18.1 Splunk search head cluster overview
18.2 Search head cluster configuration
Section 19: 19.0 Search Head Cluster Management and Administration
Weight:
5%
19.1 Search head cluster deployer
19.2 Captaincy transfer
19.3 Search head member addition and decommissioning
Section 20: 20.0 KV Store Collection and Lookup Management
Weight:
3%
20.1 KV Store collection in Splunk clusters
Info