Courseiva
Enterprise Firewall and VDOMsmediumMultiple ChoiceObjective-mapped

FortiView Top Applications by Bandwidth

An administrator needs to generate a report showing top applications by bandwidth usage across all VDOMs for the last 30 days. Which FortiAnalyzer feature should be used?

Quick Answer

The answer is FortiView. This is the correct feature because it uses pre-aggregated data within FortiAnalyzer’s summarization engine to display top applications by bandwidth usage across all VDOMs without requiring custom SQL or report templates, making it ideal for historical analysis over a specified range like the last 30 days. On the Fortinet NSE 7 Advanced Security exam, this question tests your understanding of FortiAnalyzer’s built-in analytics versus custom reports—a common trap is selecting “Reports” or “SQL Query,” which require manual configuration and lack the cross-VDOM, real-time visibility that FortiView provides natively. Remember that FortiView is the go-to for instant, multi-VDOM traffic insights, while reports are for scheduled, formatted output. Memory tip: “FortiView gives the view—no query needed.”

⚠ Common exam trap

It's easy for candidates to confuse FortiView with log browsing, thinking raw logs are needed for custom reports, but FortiView’s pre-aggregated analytics are specifically designed for this exact use case.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

FortiView

FortiView is the correct feature because it provides pre-aggregated, real-time and historical traffic analytics, including top applications by bandwidth usage, across all VDOMs without requiring custom queries. It leverages the FortiAnalyzer’s built-in data summarization engine to display per-VDOM and cross-VDOM application usage over a specified time range, such as the last 30 days.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • FortiView

    Why this is correct

    Correct.

  • Playbooks

    Why it's wrong here

    Playbooks automate responses, not reporting.

  • Log browsing

    Why it's wrong here

    Log browsing shows raw logs, not aggregated reports.

  • Incident management

    Why it's wrong here

    Incidents are for security events, not bandwidth reporting.

About these practice questions

One of 940 original NSE7 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

Same concept, more angles

1 more way this is tested on NSE7

These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.

Variation 1. An administrator needs to view real-time traffic logs and top applications for a specific VDOM on FortiAnalyzer. Which tool should be used?

easy
  • A.FortiView
  • B.Playbooks
  • C.Incident Management
  • D.Reports

Why A: FortiView is the correct tool because it provides real-time traffic logs and top applications per VDOM on FortiAnalyzer. It uses live data streams from FortiGate logs to display current network activity, allowing administrators to filter by VDOM and view metrics like top applications, sources, and destinations without running a report or script.

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This NSE7 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE7 exam.