Objective 3.3

Core Certified User

Use the fields sidebar

Objective 3.3 sits in Using Fields in Searches, which carries 20% of the Core Certified User exam. The questions below are original, written from the official objective title above, and each explanation cites the Splunk page it rests on.

Objective title verbatim from the official objectives. Splunk exam page

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

3-3Using Fields in Searches

A user runs a search and watches the panel to the left of the events list change. What does Splunk say the Fields sidebar updates?

The list of indexes being searchedIndexes are chosen in the search string rather than listed here.
The Selected and Interesting Fields listsCorrect · your answerCorrect.
The saved reports in the current appSaved reports are reached from the Reports tab in the app.
The time range applied to the searchThe time range picker sits beside the search bar.

Correct.

Checked against help.splunk.com, August 2026

Concept

The sidebar is a view of what the search found rather than a fixed menu. It changes with every search, which makes it the fastest way to learn the shape of unfamiliar data.

Why B

Splunk states that as events are retrieved that match your search, the Fields sidebar updates the Selected Fields and Interesting Fields lists, and that these are the fields the software extracts from your data.

Source

To the left of the events list is the Fields sidebar. As events are retrieved that match your search, the Fields sidebar updates the Selected Fields and Interesting Fields lists. These are the fields that the Splunk software extracts from your data.

Splunk Docs: Use fields to search, checked August 2026
#fields-sidebar#splunk-web

Now you: objective 3.3 questions

No account needed. The explanation opens when you answer.

Sample question 1 of 3

3-3Using Fields in Searches

An analyst asks what qualifies a field for the Interesting Fields list. What threshold does Splunk document?

Sample question 2 of 3

3-3Using Fields in Searches

A user runs their first search and looks at the Selected Fields list before changing anything. Which fields does Splunk say it contains?

Sample question 3 of 3

3-3Using Fields in Searches

An analyst adds a field to the Selected Fields list. What does Splunk say that changes about the search results?

Full Core Certified User question bank coming

We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Using Fields in Searches