Fortinet
NSE8_812 · Question #44
NSE8_812 Question #44: Real Exam Question with Answer & Explanation
Sign in or unlock NSE8_812 to reveal the answer and full explanation for question #44. The question stem and answer options stay visible for context.
Question
You must analyze an event that happened at 20:37 UTC. date=2022-07-11 time=10:37:09 eventtime=165757829014946018 tz="-1000" logid="0000000022" type="traffic" subtype="forward" level="notice" vd="root" srcintf="10.100.10.10" srcintfrole="lan" dstintf="wan1" dstintfrole="wan" dstip=8.8.8.8 dstport=53 dstnatip=0.0.0.0 FortiTaintfole="wan" srcuuid="94e63fcc-0124-51ed-728f-eae16990bb5c" dstuuid="2bd33fcc-0124-51ed-728f-eae16990bb5c" sessionid=27572 service="http" country="United States" action="accept" policyid=13 policytype="policy" policyname="LAB-to-WAN" user="testuser" group="testgroup" srcip=192.168.1.1 dstip=8.8.8.8 srcport=12345 dstport=80 useragent="Mozilla/5.0" appname="Network.Service" apprisk="elevated" appcat="Default" duration=180 sentbyte=45 rcvdbyte=120 sentpkt=1 rcvdpkt=1 vpnflow="none" masterd=0 logid=1010101010 pri_level=critical msg="Fortigate device initiated traffic" mastersrcmac="00:09:01:00:10:03:01" srcmac="00:09:01:00:10:03:01" srcserver=0 One log relevant to the event is extracted from FortiGate logs: The devices and the administrator are all located in different time zones Daylight savings time (DST) is disabled. - The FortiGate is at GMT-10:00 - The FortiAnalyzer is at GMT-08:00 - Your browser local time zone is at GMT-03:00 You want to review this log on FortiAnalyzer GUI, what time should you use as a filter?
Options
- A20:37:00
- B10:37:08
- C12:37:08
- D12:37:08
Unlock NSE8_812 to see the answer
You've previewed enough free NSE8_812 questions. Unlock NSE8_812 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.