Objective 14.2
Enterprise Certified AdminDescribe HTTP Event Collector
Objective 14.2 sits in Agentless Inputs, which carries 5% of the Enterprise Certified Admin exam. The questions below are original, written from the official objective title above, and each explanation cites the Splunk page it rests on.
Objective title verbatim from the official objectives. Splunk exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
An administrator asks what the HTTP Event Collector lets applications do. What does Splunk say?
Correct.
Checked against help.splunk.com, August 2026Concept
Letting an application post its own events removes the file on disk and the agent that would have read it. The trade is that the application now owns delivery.
Why C
Splunk states that the HTTP Event Collector lets you send data and application events to a Splunk deployment over the HTTP and Secure HTTP protocols.
Source
Splunk Docs: Set up and use HTTP Event Collector in Splunk Web, checked August 2026The HTTP Event Collector (HEC) lets you send data and application events to a Splunk deployment over the HTTP and Secure HTTP (HTTPS) protocols.
Now you: objective 14.2 questions
No account needed. The explanation opens when you answer.
Sample question 1 of 2
An administrator asks what authentication model HEC uses. What does Splunk say?
Sample question 2 of 2
An administrator asks what HEC removes the need for when sending application events. What does Splunk say?
Full Enterprise Certified Admin question bank coming
We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.
Read the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.