Here you can find all the free questions related with Fortinet NSE 5 - FortiSandbox 5.0 Administrator (FCP_FSA_AD-5.0) exam. You can also find on this page links to recently updated premium files with which you can practice for actual Fortinet NSE 5 - FortiSandbox 5.0 Administrator Exam. These premium versions are provided as FCP_FSA_AD-5.0 exam practice tests, both as desktop software and browser based application, you can use whatever suits your style. Feel free to try the Fortinet NSE 5 - FortiSandbox 5.0 Administrator Exam premium files for free, Good luck with your Fortinet NSE 5 - FortiSandbox 5.0 Administrator Exam.
Question No: 1
MultipleChoice
Refer to the exhibits.
A FortiClient EMS server is integrated with a FortiSandbox device. You are asked to find ways to expedite all scan jobs that require dynamic scanning so end users do not have to wait too long for a rating on suspicious attachments and URLs. Which configuration change will maintain a high security level but expedite all dynamic scan job requests? (Select one answer)
Options
Answer BExplanation
The best answer is B. enable Pipeline Mode. The FortiSandbox 5.0 Administrator Study Guide states: ''The Pipeline Mode feature improves performance by allowing to scan multiple files, one at a time, without shutting down the VM instance after scanning each file.'' It further explains that ''FortiSandbox will continue scanning files without shutting down the VM instance, as long as the VM status hasn't changed.'' This directly improves the throughput of dynamic VM-based scanning, which is exactly what the question asks for.
The other options do not fit as well. Option A would reduce waiting time for users, but it lowers security because files could be accessed before a sandbox verdict is returned; the EMS lab profile intentionally enables ''Wait for FortiSandbox Results before Allowing File Access'' with a Low detection level to maintain strong protection. Option C also weakens security by making remediation apply only when the verdict ''equals or exceeds the selected FortiSandbox Detection Verdict Level,'' so raising it to Medium would ignore Low-risk detections. Option D enables prefiltering logic, which can reduce submissions, but it does not directly accelerate jobs that already require dynamic scanning. Therefore, Pipeline Mode is the only choice that both preserves a high security level and speeds dynamic scan processing.
Question No: 2
MultipleChoice
There is a connectivity problem between FortiSandbox and the FortiGuard distribution servers. You observe that a firewall located between FortiSandbox and the internet allows traffic on ports TCP/4443, UDP/8888, and UDP/53. What is the cause of the issue? (Choose one answer)
Options
Answer AExplanation
From the Deployment and System Settings lesson, the Study Guide states:
'The test-network command checks FortiGuard services as its last set of validation tests. These include the FortiGuard distribution network (FDN) accessibility, FDN contract expiration, web filtering service, and the community cloud service. All these FortiGuard services should be reachable and valid for FortiSandbox to be effective.'
'The diagnose-debug fdn command provides details around FortiSandbox and the FortiGuard Distribution Network (FDN) communication and updates.'
FortiGuard Distribution Network (FDN) communication requires TCP/443 for HTTPS-based update and licensing communication. The current firewall rules allow TCP/4443 (API/management), UDP/8888 (FortiGuard queries), and UDP/53 (DNS), but TCP/443 is missing --- which is the standard port required for FortiGuard FDN connectivity and license validation.