Fortinet NSE6_FML-6.2 Dumps - The Sure Way To Pass Exam
NSE6_FML-6.2 Exam Questions (Updated 2022) 100% Real Question Answers
NEW QUESTION 22
Refer to the exhibit.
Which two statements about the mail server settings are true? (Choose two.)
- A. FortiMail will support the STARTTLS extension
- B. FortiMail will enforce SMTPS on all outbound sessions
- C. FortiMail will accept SMTPS connections
- D. FortiMail will drop any inbound plaintext SMTP connection
Answer: C,D
NEW QUESTION 23
Refer to the exhibit.
Which two statements about the mail server settings are true? (Choose two.)
- A. FortiMail will support the STARTTLS extension
- B. FortiMail will enforce SMTPS on all outbound sessions
- C. FortiMail will accept SMTPS connections
- D. FortiMail will drop any inbound plaintext SMTP connection
Answer: C,D
NEW QUESTION 24
Examine the FortiMail topology and access receive rule shown in the exhibit; then answer the question below.

An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which of the following settings should be used to configure the access receive rule? (Choose two.)
- A. The Recipient pattern should be set o *@example.com
- B. The Sender IP/netmask should be set to 10.29.1.0/24
- C. The Action should be set to Reject
- D. The Authentication status should be set to Authenticated
Answer: B,D
NEW QUESTION 25
Examine the FortiMail IBE users shown in the exhibit; then answer the question below
Which one of the following statements describes the Pre-registered status of the IBE user [email protected]?
- A. The user has completed the IBE registration process but has not yet accessed their IBE email
- B. The user was registered by an administrator in anticipation of IBE participation
- C. The user has received an IBE notification email, but has not accessed the HTTPS URL or attachment yet
- D. The user account has been de-activated, and the user must register again the next time they receive an IBE email
Answer: C
NEW QUESTION 26
What are the configuration steps to enable DKIM signing for outbound messages on FortiMail? (Choose three.)
- A. Enable DKIM check in a matching session profile
- B. Publish the public key as a TXT record in a public DNS server
- C. Enable DKIM check in a matching antispam profile
- D. Enable DKIM signing for outgoing messages in a matching session profile
- E. Generate a public/private key pair in the protected domain configuration
Answer: B,D,E
NEW QUESTION 27
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)
- A. SMTPS encrypts the identities of both the sender and receiver
- B. SMTP over TLS connections are entirely encrypted and initiated on port 465
- C. SMTPS encrypts only the body of the email message
- D. The STARTTLS command is used to initiate SMTP over TLS
- E. SMTPS connections are initiated on port 465
Answer: A,D,E
Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/807960/fortimail- support-of-tls-ssl
NEW QUESTION 28
Refer to the exhibit.
It is recommended that you configure which three access receive settings to allow outbound email from the example.com domain on FML-1? (Choose three.)
- A. The Sender pattern should be set to *@example.com
- B. The Enable check box should be cleared
- C. The Sender IP/netmask should be set to 10.29.1.45/32
- D. The Recipient pattern should be set to 10.29.1.45/24
- E. The Action should be set to Relay
Answer: B,C,E
NEW QUESTION 29
Examine the FortiMail DLP scan rule shown in the exhibit; then answer the question below.
Which of the following statements is true regarding this configuration? (Choose two.)
- A. An email message containing the words "Credit Card" in the subject will trigger this scan rule
- B. An email message containing credit card numbers in the body will trigger this scan rule
- C. If an email is sent from [email protected] the action will be applied without matching any conditions
- D. An email must contain credit card numbers in the body, attachment, and subject to trigger this scan rule
Answer: A,B
NEW QUESTION 30
Refer to the exhibit.
An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which two settings should be used to configure the access receive rule? (Choose two.)
- A. The Sender IP/netmask should be set to 10.29.1.0/24
- B. The Recipient pattern should be set to *@example.com
- C. The Action should be set to Reject
- D. The Authentication status should be set to Authenticated
Answer: A,D
NEW QUESTION 31
Examine the configured routes shown in the exhibit; then answer the question below.
Which interface will FortiMail use to forward an email message destined for 10.1.100.252?
- A. port3
- B. port2
- C. port1
- D. port4
Answer: B
NEW QUESTION 32
Refer to the exhibit.
What two archiving actions will FortiMail take when email messages match these archive policies? (Choose two.)
- A. FortiMail will allow only the [email protected] account to access the archived email
- B. FortiMail will archive email sent from [email protected]
- C. FortiMail will exempt spam email from archiving
- D. FortiMail will save archived email in the journal account
Answer: A,D
NEW QUESTION 33
Refer to the exhibit.
What are two expected outcomes if FortiMail applies this antivirus action profile to an email? (Choose two.)
- A. The administrator will be notified of the virus detection
- B. Virus content will be removed from the email
- C. The sanitized email will be sent to the recipient's personal quarantine
- D. A replacement message will be added to the email
Answer: C,D
NEW QUESTION 34
A FortiMail is configured with the protected domain example.com.
On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: C,D
Explanation:
Explanation/Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/9aa62d26-858d-11ea-
9384-00505692583a/FortiMail-6.4.0-Administration_Guide.pdf (30)
NEW QUESTION 35
Refer to the exhibit.
Which two statements about the access receive rule are true? (Choose two.)
- A. Senders must be authenticated to match this rule
- B. Email matching this rule will be relayed
- C. Email must originate from an example.comemail address to match this rule
- D. Email from any host in the 10.0.1.0/24subnet can match this rule
Answer: B,C
NEW QUESTION 36
Refer to the exhibit.
An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the mail server starts filling up with undeliverable email. What two changes must the administrator make to fix this issue? (Choose two.)
- A. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
- B. Disable the exclusive flag in IP policy ID 1
- C. Clear the sender reputation database using the CLI
- D. Create an outbound recipient policy to bypass outbound email from session profile inspections
Answer: A,B
NEW QUESTION 37
Refer to the exhibit.
The exhibit shows a FortiMail active-passive setup.
Which three actions are recommended when configuring the primary FortiMail HA interface? (Choose three.)
- A. In the Heartbeat status drop-down list, select Primary
- B. In the Peer IP address field, type 172.16.32.57
- C. In the Virtual IP action drop-down list, select Use
- D. In the Virtual IP address field, type 172.16.32.55/24
- E. Disable Enable port monitor
Answer: A,C,E
NEW QUESTION 38
Examine the FortMail mail server settings shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. mx.example.com will display STARTTLS as one of the supported commands in SMTP sessions
- B. mx.example.com will accept SMTPS connections
- C. mx.example.com will enforce SMTPS on all outbound sessions
- D. mx.example.com will drop any inbound plaintext SMTP connection
Answer: A,B
NEW QUESTION 39
Which firmware upgrade method for an active-passive HA cluster ensures service outage is minimal, and there are no unnecessary failovers?
- A. Break the cluster, upgrade the units independently, and then form the cluster
- B. Upgrade the standby unit, and then upgrade the active unit
- C. Upgrade the active unit, which will upgrade the standby unit automatically
- D. Upgrade both units at the same time
Answer: D
NEW QUESTION 40
Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.
An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)
- A. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
- B. Disable the exclusive flag in IP policy ID 1
- C. Clear the sender reputation database using the CLI
- D. Create an outbound recipient policy to bypass outbound email from session profile inspections
Answer: B,D
NEW QUESTION 41
......
Pass Fortinet NSE6_FML-6.2 Exam Quickly With PassLeaderVCE: https://www.passleadervce.com/NSE-6-Network-Security-Specialist/reliable-NSE6_FML-6.2-exam-learning-guide.html