Splunk SPLK-1003 Exam - Topic 3 Question 62 Discussion
Social Security Numbers (PII) data is found in log events, which is against company policy. SSN format is asfollows: 123-44-5678.Which configuration file and stanza pair will mask possible SSNs in the log events?
D) transforms.conf
[mask-SSN]
REGEX = (?ms)^(.)\<[SSN>\d{3}-?\d{2}-?(\d{4}.*)$'
FORMAT = $1<SSN>###-##-$2
DEST_KEY = _raw
A) props.conf
[mask-SSN]
REX = (?ms)^(.)\<[SSN>\d{3}-?\d{2}-?(\d{4}.*)$'
FORMAT = $1<SSN>###-##-$2
KEY = _raw
B) props.conf
[mask-SSN]
REGEX = (?ms)^(.)\<[SSN>\d{3}-?\d{2}-?(\d{4}.*)$'
FORMAT = $1<SSN>###-##-$2
DEST_KEY = _raw
C) transforms.conf
[mask-SSN]
REX = (?ms)^(.)\<[SSN>\d{3}-?\d{2}-?(\d{4}.*)$'
FORMAT = $1<SSN>###-##-$2
DEST_KEY = _raw
Lacresha
8 months agoCecilia
8 months agoNathan
9 months agoFrancene
9 months agoLeonard
9 months agoRusty
9 months agoTashia
9 months agoDusti
9 months agoEleonora
9 months agoAmos
9 months agoMarshall
9 months agoPrincess
10 months agoJusta
10 months ago