nerdexam
Palo_Alto_Networks

PCNSE · Question #758

All firewalls at a company are currently forwarding logs to Palo Alto Networks log collectors. The company also wants to deploy a syslog server and forward all firewall logs to the syslog server and…

The correct answer is D. Navigate to Panorama > Managed Devices > Health, open the Logging tab for each managed. To efficiently determine the logs per second processed by Palo Alto Networks log collectors at peak times, an administrator should use the Logging tab within the Health section for each managed device in Panorama.

Submitted by kevin_r· Apr 18, 2026Operate

Question

All firewalls at a company are currently forwarding logs to Palo Alto Networks log collectors. The company also wants to deploy a syslog server and forward all firewall logs to the syslog server and to the log collectors. There is a known logging peak time during the day and the security team has asked the firewall engineer to determine how many logs per second the current Palo Alto Networks log collectors are processing at that particular time. Which method is the most time-efficient to complete this task?

Options

  • ANavigate to Panorama > Managed Collectors, and open the Statistics window for each Log
  • BNavigate to ACC > Network Activity, and determine the total number of sessions and threats
  • CNavigate to Monitor > Unified logs, set the filter to the peak time, and browse to the last page to
  • DNavigate to Panorama > Managed Devices > Health, open the Logging tab for each managed

How the community answered

(50 responses)
  • A
    14% (7)
  • B
    6% (3)
  • C
    2% (1)
  • D
    78% (39)

Why each option

To efficiently determine the logs per second processed by Palo Alto Networks log collectors at peak times, an administrator should use the `Logging` tab within the `Health` section for each managed device in Panorama.

ANavigate to Panorama > Managed Collectors, and open the Statistics window for each Log

While `Managed Collectors > Statistics` might offer some data, the 'Health' section's 'Logging' tab is typically more specific and comprehensive for real-time logging performance metrics.

BNavigate to ACC > Network Activity, and determine the total number of sessions and threats

ACC > Network Activity shows overall network session and threat trends on firewalls, not the specific logging throughput of the log collectors.

CNavigate to Monitor > Unified logs, set the filter to the peak time, and browse to the last page to

Monitor > Unified logs provides a view of logs, but filtering logs by peak time and browsing to the last page will not give a quantifiable 'logs per second' metric for the *collector's* processing capability.

DNavigate to Panorama > Managed Devices > Health, open the Logging tab for each managedCorrect

Navigating to `Panorama > Managed Devices > Health` and then opening the `Logging` tab for each managed log collector provides specific performance metrics, including 'Log Rate (logs/sec)'. This method directly shows the logging throughput of the collectors themselves, which is the most time-efficient way to assess their processing load during peak times.

Concept tested: Panorama Log Collector performance monitoring

Source: https://docs.paloaltonetworks.com/panorama/10-2/panorama-admin/manage-firewalls/monitor-firewall-status-and-logs/view-managed-firewall-system-information

Topics

#Logging#Panorama Management#Performance Monitoring#Log Collectors

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice