nerdexam
CompTIA

CV0-003 · Question #753

Audit and system logs are being forwarded to a syslog solution. An administrator observes that two application servers have not generated any logs for a period of three days, while others continue…

The correct answer is D. There is a local firewall policy restriction on the syslog server. Syslog is a standard protocol for sending logs from a server to a centralized logging server. The syslog server is typically configured to accept logs from all servers on the network. If two application servers have not generated any logs for a period of three days, while…

Troubleshooting

Question

Audit and system logs are being forwarded to a syslog solution. An administrator observes that two application servers have not generated any logs for a period of three days, while others continue to send logs normally. Which of the following BEST explains what is occurring?

Options

  • AThere is a configuration failure in the syslog solution
  • BThe application servers were migrated to the cloud as IaaS instances
  • CThe application administrators have not performed any activity in those servers
  • DThere is a local firewall policy restriction on the syslog server

How the community answered

(21 responses)
  • A
    5% (1)
  • B
    10% (2)
  • C
    5% (1)
  • D
    81% (17)

Explanation

Syslog is a standard protocol for sending logs from a server to a centralized logging server. The syslog server is typically configured to accept logs from all servers on the network. If two application servers have not generated any logs for a period of three days, while others continue to send logs normally, the most likely explanation is that there is a local firewall policy restriction on the syslog server that is blocking the logs from the two application servers.

Topics

#syslog#firewall policy#log forwarding#troubleshooting

Community Discussion

No community discussion yet for this question.

Full CV0-003 Practice