C1000-026 · Question #9
An administrator logs into the QRadar Console to review the stored backup files. There is an exclamation mark beside some files. What is the cause of this?
The correct answer is B. Missing backup files. In QRadar, an exclamation mark (!) beside a backup file in the Console indicates that the file is missing - meaning QRadar expected the file to exist based on its backup schedule records, but cannot locate it on disk. This typically happens when backup files are manually…
Question
An administrator logs into the QRadar Console to review the stored backup files. There is an exclamation mark beside some files. What is the cause of this?
Options
- ACanceled backup files
- BMissing backup files
- CCorrupted backup files
- DIncomplete backup files
How the community answered
(55 responses)- A9% (5)
- B82% (45)
- C4% (2)
- D5% (3)
Explanation
In QRadar, an exclamation mark (!) beside a backup file in the Console indicates that the file is missing - meaning QRadar expected the file to exist based on its backup schedule records, but cannot locate it on disk. This typically happens when backup files are manually deleted, moved, or lost due to storage issues after the backup record was created.
Why the distractors are wrong:
- A (Canceled): Canceled backups would typically not appear in the list at all, or would show a distinct "canceled" status - not an exclamation mark.
- C (Corrupted): Corrupted files would still be physically present; QRadar uses different indicators for integrity issues.
- D (Incomplete): An incomplete backup would be flagged during the backup process itself, not represented by an exclamation mark in the stored files view.
Memory tip: Think of the exclamation mark as QRadar saying "I expected this file to be here, but it's gone!" - the file is not broken or unfinished, it's simply absent/missing. Associate ! with "it's not there!"
Topics
Community Discussion
No community discussion yet for this question.