Fortinet NSE6_FML-6.2 Dumps - The Sure Way To Pass Exam [Q22-Q41]

Share

Fortinet NSE6_FML-6.2 Dumps - The Sure Way To Pass Exam

NSE6_FML-6.2 Exam Questions (Updated 2022) 100% Real Question Answers

NEW QUESTION 22
Refer to the exhibit.

Which two statements about the mail server settings are true? (Choose two.)

  • A. FortiMail will support the STARTTLS extension
  • B. FortiMail will enforce SMTPS on all outbound sessions
  • C. FortiMail will accept SMTPS connections
  • D. FortiMail will drop any inbound plaintext SMTP connection

Answer: C,D

 

NEW QUESTION 23
Refer to the exhibit.

Which two statements about the mail server settings are true? (Choose two.)

  • A. FortiMail will support the STARTTLS extension
  • B. FortiMail will enforce SMTPS on all outbound sessions
  • C. FortiMail will accept SMTPS connections
  • D. FortiMail will drop any inbound plaintext SMTP connection

Answer: C,D

 

NEW QUESTION 24
Examine the FortiMail topology and access receive rule shown in the exhibit; then answer the question below.


An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which of the following settings should be used to configure the access receive rule? (Choose two.)

  • A. The Recipient pattern should be set o *@example.com
  • B. The Sender IP/netmask should be set to 10.29.1.0/24
  • C. The Action should be set to Reject
  • D. The Authentication status should be set to Authenticated

Answer: B,D

 

NEW QUESTION 25
Examine the FortiMail IBE users shown in the exhibit; then answer the question below

Which one of the following statements describes the Pre-registered status of the IBE user [email protected]?

  • A. The user has completed the IBE registration process but has not yet accessed their IBE email
  • B. The user was registered by an administrator in anticipation of IBE participation
  • C. The user has received an IBE notification email, but has not accessed the HTTPS URL or attachment yet
  • D. The user account has been de-activated, and the user must register again the next time they receive an IBE email

Answer: C

 

NEW QUESTION 26
What are the configuration steps to enable DKIM signing for outbound messages on FortiMail? (Choose three.)

  • A. Enable DKIM check in a matching session profile
  • B. Publish the public key as a TXT record in a public DNS server
  • C. Enable DKIM check in a matching antispam profile
  • D. Enable DKIM signing for outgoing messages in a matching session profile
  • E. Generate a public/private key pair in the protected domain configuration

Answer: B,D,E

 

NEW QUESTION 27
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)

  • A. SMTPS encrypts the identities of both the sender and receiver
  • B. SMTP over TLS connections are entirely encrypted and initiated on port 465
  • C. SMTPS encrypts only the body of the email message
  • D. The STARTTLS command is used to initiate SMTP over TLS
  • E. SMTPS connections are initiated on port 465

Answer: A,D,E

Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/807960/fortimail- support-of-tls-ssl

 

NEW QUESTION 28
Refer to the exhibit.

It is recommended that you configure which three access receive settings to allow outbound email from the example.com domain on FML-1? (Choose three.)

  • A. The Sender pattern should be set to *@example.com
  • B. The Enable check box should be cleared
  • C. The Sender IP/netmask should be set to 10.29.1.45/32
  • D. The Recipient pattern should be set to 10.29.1.45/24
  • E. The Action should be set to Relay

Answer: B,C,E

 

NEW QUESTION 29
Examine the FortiMail DLP scan rule shown in the exhibit; then answer the question below.

Which of the following statements is true regarding this configuration? (Choose two.)

  • A. An email message containing the words "Credit Card" in the subject will trigger this scan rule
  • B. An email message containing credit card numbers in the body will trigger this scan rule
  • C. If an email is sent from [email protected] the action will be applied without matching any conditions
  • D. An email must contain credit card numbers in the body, attachment, and subject to trigger this scan rule

Answer: A,B

 

NEW QUESTION 30
Refer to the exhibit.

An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which two settings should be used to configure the access receive rule? (Choose two.)

  • A. The Sender IP/netmask should be set to 10.29.1.0/24
  • B. The Recipient pattern should be set to *@example.com
  • C. The Action should be set to Reject
  • D. The Authentication status should be set to Authenticated

Answer: A,D

 

NEW QUESTION 31
Examine the configured routes shown in the exhibit; then answer the question below.

Which interface will FortiMail use to forward an email message destined for 10.1.100.252?

  • A. port3
  • B. port2
  • C. port1
  • D. port4

Answer: B

 

NEW QUESTION 32
Refer to the exhibit.

What two archiving actions will FortiMail take when email messages match these archive policies? (Choose two.)

  • A. FortiMail will allow only the [email protected] account to access the archived email
  • B. FortiMail will archive email sent from [email protected]
  • C. FortiMail will exempt spam email from archiving
  • D. FortiMail will save archived email in the journal account

Answer: A,D

 

NEW QUESTION 33
Refer to the exhibit.

What are two expected outcomes if FortiMail applies this antivirus action profile to an email? (Choose two.)

  • A. The administrator will be notified of the virus detection
  • B. Virus content will be removed from the email
  • C. The sanitized email will be sent to the recipient's personal quarantine
  • D. A replacement message will be added to the email

Answer: C,D

 

NEW QUESTION 34
A FortiMail is configured with the protected domain example.com.
On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)

Answer: C,D

Explanation:
Explanation/Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/9aa62d26-858d-11ea-
9384-00505692583a/FortiMail-6.4.0-Administration_Guide.pdf (30)

 

NEW QUESTION 35
Refer to the exhibit.

Which two statements about the access receive rule are true? (Choose two.)

  • A. Senders must be authenticated to match this rule
  • B. Email matching this rule will be relayed
  • C. Email must originate from an example.comemail address to match this rule
  • D. Email from any host in the 10.0.1.0/24subnet can match this rule

Answer: B,C

 

NEW QUESTION 36
Refer to the exhibit.

An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the mail server starts filling up with undeliverable email. What two changes must the administrator make to fix this issue? (Choose two.)

  • A. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
  • B. Disable the exclusive flag in IP policy ID 1
  • C. Clear the sender reputation database using the CLI
  • D. Create an outbound recipient policy to bypass outbound email from session profile inspections

Answer: A,B

 

NEW QUESTION 37
Refer to the exhibit.

The exhibit shows a FortiMail active-passive setup.
Which three actions are recommended when configuring the primary FortiMail HA interface? (Choose three.)

  • A. In the Heartbeat status drop-down list, select Primary
  • B. In the Peer IP address field, type 172.16.32.57
  • C. In the Virtual IP action drop-down list, select Use
  • D. In the Virtual IP address field, type 172.16.32.55/24
  • E. Disable Enable port monitor

Answer: A,C,E

 

NEW QUESTION 38
Examine the FortMail mail server settings shown in the exhibit; then answer the question below.

Which of the following statements are true? (Choose two.)

  • A. mx.example.com will display STARTTLS as one of the supported commands in SMTP sessions
  • B. mx.example.com will accept SMTPS connections
  • C. mx.example.com will enforce SMTPS on all outbound sessions
  • D. mx.example.com will drop any inbound plaintext SMTP connection

Answer: A,B

 

NEW QUESTION 39
Which firmware upgrade method for an active-passive HA cluster ensures service outage is minimal, and there are no unnecessary failovers?

  • A. Break the cluster, upgrade the units independently, and then form the cluster
  • B. Upgrade the standby unit, and then upgrade the active unit
  • C. Upgrade the active unit, which will upgrade the standby unit automatically
  • D. Upgrade both units at the same time

Answer: D

 

NEW QUESTION 40
Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.

An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)

  • A. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
  • B. Disable the exclusive flag in IP policy ID 1
  • C. Clear the sender reputation database using the CLI
  • D. Create an outbound recipient policy to bypass outbound email from session profile inspections

Answer: B,D

 

NEW QUESTION 41
......

Pass Fortinet NSE6_FML-6.2 Exam Quickly With PassLeaderVCE: https://www.passleadervce.com/NSE-6-Network-Security-Specialist/reliable-NSE6_FML-6.2-exam-learning-guide.html