FortiView Top Applications by Bandwidth
An administrator needs to generate a report showing top applications by bandwidth usage across all VDOMs for the last 30 days. Which FortiAnalyzer feature should be used?
Quick Answer
The answer is FortiView. This is the correct feature because it uses pre-aggregated data within FortiAnalyzer’s summarization engine to display top applications by bandwidth usage across all VDOMs without requiring custom SQL or report templates, making it ideal for historical analysis over a specified range like the last 30 days. On the Fortinet NSE 7 Advanced Security exam, this question tests your understanding of FortiAnalyzer’s built-in analytics versus custom reports—a common trap is selecting “Reports” or “SQL Query,” which require manual configuration and lack the cross-VDOM, real-time visibility that FortiView provides natively. Remember that FortiView is the go-to for instant, multi-VDOM traffic insights, while reports are for scheduled, formatted output. Memory tip: “FortiView gives the view—no query needed.”
⚠ Common exam trap
It's easy for candidates to confuse FortiView with log browsing, thinking raw logs are needed for custom reports, but FortiView’s pre-aggregated analytics are specifically designed for this exact use case.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
FortiView
FortiView is the correct feature because it provides pre-aggregated, real-time and historical traffic analytics, including top applications by bandwidth usage, across all VDOMs without requiring custom queries. It leverages the FortiAnalyzer’s built-in data summarization engine to display per-VDOM and cross-VDOM application usage over a specified time range, such as the last 30 days.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
FortiView
Why this is correct
Correct.
- ✗
Playbooks
Why it's wrong here
Playbooks automate responses, not reporting.
- ✗
Log browsing
Why it's wrong here
Log browsing shows raw logs, not aggregated reports.
- ✗
Incident management
Why it's wrong here
Incidents are for security events, not bandwidth reporting.
Go deeper
Related to this question
About these practice questions
One of 940 original NSE7 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
Same concept, more angles
1 more way this is tested on NSE7
These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.
Variation 1. An administrator needs to view real-time traffic logs and top applications for a specific VDOM on FortiAnalyzer. Which tool should be used?
easy- ✓ A.FortiView
- B.Playbooks
- C.Incident Management
- D.Reports
Why A: FortiView is the correct tool because it provides real-time traffic logs and top applications per VDOM on FortiAnalyzer. It uses live data streams from FortiGate logs to display current network activity, allowing administrators to filter by VDOM and view metrics like top applications, sources, and destinations without running a report or script.
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This NSE7 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE7 exam.