CV0-003 · Question #753
Audit and system logs are being forwarded to a syslog solution. An administrator observes that two application servers have not generated any logs for a period of three days, while others continue…
The correct answer is D. There is a local firewall policy restriction on the syslog server. Syslog is a standard protocol for sending logs from a server to a centralized logging server. The syslog server is typically configured to accept logs from all servers on the network. If two application servers have not generated any logs for a period of three days, while…
Question
Audit and system logs are being forwarded to a syslog solution. An administrator observes that two application servers have not generated any logs for a period of three days, while others continue to send logs normally. Which of the following BEST explains what is occurring?
Options
- AThere is a configuration failure in the syslog solution
- BThe application servers were migrated to the cloud as IaaS instances
- CThe application administrators have not performed any activity in those servers
- DThere is a local firewall policy restriction on the syslog server
How the community answered
(21 responses)- A5% (1)
- B10% (2)
- C5% (1)
- D81% (17)
Explanation
Syslog is a standard protocol for sending logs from a server to a centralized logging server. The syslog server is typically configured to accept logs from all servers on the network. If two application servers have not generated any logs for a period of three days, while others continue to send logs normally, the most likely explanation is that there is a local firewall policy restriction on the syslog server that is blocking the logs from the two application servers.
Topics
Community Discussion
No community discussion yet for this question.