Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dcdisc65

Page: 1 / 1
Total 9 questions
Exam Code: NSE5_EDR-5.0                Update: Oct 15, 2025
Exam Name: Fortinet NSE 5 - FortiEDR 5.0 Exam

Fortinet Fortinet NSE 5 - FortiEDR 5.0 Exam NSE5_EDR-5.0 Exam Dumps: Updated Questions & Answers (October 2025)

Question # 1

Exhibit.

Based on the event shown in the exhibit which two statements about the event are true? (Choose two.)

A.

The device is moved to isolation.

B.

Playbooks is configured for this event.

C.

The event has been blocked

D.

The policy is in simulation mode

Question # 2

FortiXDR relies on which feature as part of its automated extended response?

A.

Playbooks

B.

Security Policies

C.

Forensic

D.

Communication Control

Question # 3

Which FortiEDR component is required to find malicious files on the entire network of an organization?

A.

FortiEDR Aggregator

B.

FortiEDR Central Manager

C.

FortiEDR Threat Hunting Repository

D.

FortiEDR Core

Question # 4

An administrator needs to restrict access to the ADMINISTRATION tab inthe central manager for a specific account.

What role should the administrator assign to this account?

A.

Admin

B.

User

C.

Local Admin

D.

REST API

Question # 5

Refer to the exhibits.

The exhibits show the collector state and active connections. The collector is unable to connect to aggregator IP address 10.160.6.100 using default port.

Based on the netstat command output what must you do to resolve the connectivity issue?

A.

Reinstall collector agent and use port 443

B.

Reinstall collector agent and use port 8081

C.

Reinstall collector agent and use port 555

D.

Reinstall collector agent and use port 6514

Question # 6

An administrator finds a third party free software on a user's computer mat does not appear in me application list in the communication control console

Which two statements are true about this situation? (Choose two)

A.

The application is allowed in all communication control policies

B.

The application is ignored as the reputation score is acceptable by the security policy

C.

The application has not made any connection attempts

D.

The application is blocked by the security policies

Question # 7

Refer to the exhibits.

The exhibits show application policy logs and application details Collector C8092231196 is a member of the Finance group

What must an administrator do to block the FileZilia application?

A.

Deny application in Finance policy

B.

Assign Finance policy to DBA group

C.

Assign Finance policy to Default Collector Group

D.

Assign Simulation Communication Control Policy to DBA group

Question # 8

Refer to the exhibit.

Based on the FortiEDR status output shown in the exhibit, which two statements about the FortiEDR collector are true? (Choose two.)

A.

The collector device has windows firewall enabled

B.

The collector has been installed with an incorrect port number

C.

The collector has been installed with an incorrect registration password

D.

The collector device cannot reach the central manager

Question # 9

Which two statements are true about the remediation function in the threat hunting module? (Choose two.)

A.

The file is removed from the affected collectors

B.

The threat hunting module sends the user a notification to delete the file

C.

The file is quarantined

D.

The threat hunting module deletes files from collectors that are currently online.

Page: 1 / 1
Total 9 questions

Most Popular Certification Exams

Payment

       

Contact us

dumpscollection live chat

Site Secure

mcafee secure

TESTED 16 Oct 2025