Labour Day Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Fortinet NSE6_FML-6.4 Dumps

Fortinet NSE 6 - FortiMail 6.4 Questions and Answers

Question 1

Refer to the exhibit.

Which two statements about email messages sent from User A to User B are correct? (Choose two.)

Options:

A.

User A's MUA will perform a DNS MX record lookup to send the email message.

B.

mx.example1.org will forward the email message to the MX record that has the lowest preference.

C.

The DNS server will act as an intermediary MTA.

D.

User B will retrieve the email message using either POP3 or IMAP.

Question 2

A FortiMail administrator is concerned about cyber criminals attempting to get sensitive information from employees using whaling phishing attacks.

What option can the administrator configure to prevent these types of attacks?

Options:

A.

Impersonation analysis

B.

Bounce tag verification

C.

Content disarm and reconstruction

D.

Dictionary profile with predefined smart identifiers

Question 3

Refer to the exhibit.

Which configuration change must you make to block an offending IP address temporarily?

Options:

A.

Add the offending IP address to the system block list

B.

Add the offending IP address to the user block list

C.

Add the offending IP address to the domain block list

D.

Change the authentication reputation setting status to Enable

Question 4

Refer to the exhibit.

What are two expected outcomes if FortiMail applies this antivirus action profile to an email? (Choose two.)

Options:

A.

Virus content will be removed from the email

B.

A replacement message will be added to the email

C.

The sanitized email will be sent to the recipient’s personal quarantine

D.

The administrator will be notified of the virus detection

Question 5

Examine the FortiMail recipient-based policy shown in the exhibit; then answer the question below.

After creating the policy, an administrator discovered that clients are able to send unauthenticated email using SMTP. What must be done to ensure clients cannot send unauthenticated email?

Options:

A.

Configure a matching IP policy with SMTP authentication and exclusive flag enabled

B.

Move the recipient policy to the top of the list

C.

Configure an access receive rule to verify authentication status

D.

Configure an access delivery rule to enforce authentication

Question 6

Examine the FortiMail topology and access receive rule shown in the exhibit; then answer the question below.

An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which of the following settings should be used to configure the access receive rule? (Choose two.)

Options:

A.

The Sender IP/netmask should be set to 10.29.1.0/24

B.

The Authentication status should be set to Authenticated

C.

The Recipient pattern should be set o *@example.com

D.

The Action should be set to Reject

Question 7

Examine the message column of a log cross search result of an inbound email shown in the exhibit; then answer the question below

Based on logs, which of the following statements are true? (Choose two.)

Options:

A.

The FortiMail is experiencing issues delivering the email to the back-end mail server

B.

The logs were generated by a server mode FortiMail

C.

The logs were generated by a gateway or transparent mode FortiMail

D.

The FortiMail is experiencing issues accepting the connection from the remote sender

Question 8

Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.

An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)

Options:

A.

Clear the sender reputation database using the CLI

B.

Create an outbound recipient policy to bypass outbound email from session profile inspections

C.

Disable the exclusive flag in IP policy ID 1

D.

Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions