Courseiva

NSE7 Enterprise Firewall and VDOMs Practice Question

In FortiAnalyzer, which tool provides real-time traffic monitoring and allows drilling down into details such as top talkers, applications, and threats?

⚠ Common exam trap

Many exam-takers confuse the Log Viewer's ability to display logs in real time with FortiView's purpose-built aggregation and drill-down features, leading them to select Log Viewer instead of FortiView.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

FortiView

FortiView in FortiAnalyzer provides real-time traffic monitoring with drill-down capabilities into top talkers, applications, and threats. It aggregates data from FortiGate logs and presents it in an interactive dashboard, allowing administrators to identify and investigate network anomalies instantly without generating reports.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Reports

    Why it's wrong here

    Reports generate scheduled or on-demand summaries from stored logs, so they show historical aggregates rather than real-time traffic with interactive drill-down. It is tempting because reports do present top talkers and applications, but as static output produced after the fact.

  • ✗

    Incidents

    Why it's wrong here

    Incidents groups correlated event data into cases for investigation and response workflow, not live traffic drill-down by top talkers, applications and threats. It is tempting because incident management does surface threat detail, but only after alerts are raised, not as continuous monitoring.

  • ✓

    FortiView

    Why this is correct

    FortiView is FortiAnalyzer's real-time monitoring console, presenting drill-down dashboards for top talkers, applications, and threats. It queries live log data, letting analysts pivot from aggregate views into specific sessions and detections, which matches the requirement for real-time traffic monitoring with detailed drill-down.

  • ✗

    Log Viewer

    Why it's wrong here

    Log Viewer displays raw or filtered log entries from stored logs; it lacks the real-time dashboard aggregation and drill-down into top talkers, applications and threats. It is tempting because log search does expose individual traffic records, which suits forensic investigation of specific events.

About these practice questions

Courseiva writes every NSE7 question from scratch — 718 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This NSE7 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE7 exam.