Exam PCNSA All QuestionsBrowse all questions from this exam
Question 371

Which situation is recorded as a system log?

    Correct Answer: A

    A connection with an authentication server being dropped is typically recorded as a system log. System logs generally capture events related to the status and activity of a server, network, or system, such as connection drops, system errors, and systemic changes. While detecting potentially dangerous files, blocking spoofed websites, and discovering new assets are important events, they are more likely to be recorded in security logs, intrusion detection logs, or asset management logs, rather than a general system log.

Discussion
jayessarreOption: A

A seems correct as the information closely pertains to "high" severity log type compared to the other 3 options

KaifusOption: A

Gonna go with A because it seems to be the most accurate. The system log shows a medium event of "auth-server-up" when connectivity to an Auth server such as TACACS+ is restored.