nerdexam
Exams210-065Questions#84
Cisco

210-065 · Question #84

210-065 Question #84: Real Exam Question with Answer & Explanation

The correct answer is B: Audit Log. An Audit Log is specifically designed to record administrative actions against a system - it captures who made a configuration change, what was changed, and exactly when it occurred. This makes it the correct tool when management needs accountability information such as identifyi

Question

Refer to the exhibit. Management would like to find out when a particular multipoint control unit feature was enabled and who enabled it. Which menu option is the most appropriate when searching for that information?

Exhibit

210-065 question #84 exhibit

Options

  • AEvent Display Filter
  • BAudit Log
  • CEvent Log
  • DSyslog

Explanation

An Audit Log is specifically designed to record administrative actions against a system - it captures who made a configuration change, what was changed, and exactly when it occurred. This makes it the correct tool when management needs accountability information such as identifying which administrator enabled a specific MCU feature and at what time. The Event Log (C) records system-level operational events such as calls starting or failing, but does not track admin configuration changes. Syslog (D) is a general-purpose logging protocol for system and network messages. The Event Display Filter (A) is a UI control for filtering existing event log entries, not a log source itself. Only the Audit Log provides the who + what + when record needed for this use case.

Community Discussion

No community discussion yet for this question.

Full 210-065 Practice