Weekend Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmaspas7

Easiest Solution 2 Pass Your Certification Exams

NSE5_EDR-5.0 Fortinet NSE 5 - FortiEDR 5.0 Exam Free Practice Exam Questions (2025 Updated)

Prepare effectively for your Fortinet NSE5_EDR-5.0 Fortinet NSE 5 - FortiEDR 5.0 Exam certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2025, ensuring you have the most current resources to build confidence and succeed on your first attempt.

Page: 1 / 1
Total 30 questions

Refer to the exhibit.

Based on the threat hunting query shown in the exhibit which of the following is true?

A.

RDP connections will be blocked and classified as suspicious

B.

A security event will be triggered when the device attempts a RDP connection

C.

This query is included in other organizations

D.

The query will only check for network category

Which two statements are true about the remediation function in the threat hunting module? (Choose two.)

A.

The file is removed from the affected collectors

B.

The threat hunting module sends the user a notification to delete the file

C.

The file is quarantined

D.

The threat hunting module deletes files from collectors that are currently online.

Which two types of remote authentication does the FortiEDR management console support? (Choose two.)

A.

Radius

B.

SAML

C.

TACACS

D.

LDAP

Refer to the exhibit.

Based on the postman output shown in the exhibit why is the user getting an unauthorized error?

A.

The user has been assigned Admin and Rest API roles

B.

FortiEDR requires a password reset the first time a user logs in

C.

Postman cannot reach the central manager

D.

API access is disabled on the central manager

An administrator finds a third party free software on a user's computer mat does not appear in me application list in the communication control console

Which two statements are true about this situation? (Choose two)

A.

The application is allowed in all communication control policies

B.

The application is ignored as the reputation score is acceptable by the security policy

C.

The application has not made any connection attempts

D.

The application is blocked by the security policies

Which two statements about the FortiEDR solution are true? (Choose two.)

A.

It provides pre-infection and post-infection protection

B.

It is Windows OS only

C.

It provides central management

D.

It provides pant-to-point protection

Refer to the exhibits.

The exhibits show the collector state and active connections. The collector is unable to connect to aggregator IP address 10.160.6.100 using default port.

Based on the netstat command output what must you do to resolve the connectivity issue?

A.

Reinstall collector agent and use port 443

B.

Reinstall collector agent and use port 8081

C.

Reinstall collector agent and use port 555

D.

Reinstall collector agent and use port 6514

Refer to the exhibit.

Based on the event shown in the exhibit, which two statements about the event are true? (Choose two.)

A.

The NGAV policy has blocked TestApplication exe

B.

TestApplication exe is sophisticated malware

C.

The user was able to launch TestApplication exe

D.

FCS classified the event as malicious

Which threat hunting profile is the most resource intensive?

A.

Comprehensive

B.

Inventory

C.

Default

D.

Standard Collection

Page: 1 / 1
Total 30 questions
Copyright © 2014-2025 Solution2Pass. All Rights Reserved