Try Before You Buy

Download a free sample of any of our exam questions and answers

  • 24/7 customer support, Secure shopping site
  • Free One year updates to match real exam scenarios
  • If you failed your exam after buying our products we will refund the full amount back to you.

Fortinet New 2022 NSE6_FML-6.2 Test Tutorial (Updated 52 Questions) [Q24-Q49]

Share

Fortinet New 2022 NSE6_FML-6.2 Test Tutorial (Updated 52 Questions)

NSE6_FML-6.2 Exam Questions Dumps, Selling Fortinet Products

NEW QUESTION 24
An organization has different groups of users with different needs in email functionality, such as address book access, mobile device access, email retention periods, and disk quotas.
Which FortiMail feature specific to server mode can be used to accomplish this?

  • A. Resource profiles
  • B. Domain-level service settings
  • C. Access profiles
  • D. Address book management options

Answer: C

 

NEW QUESTION 25
Examine the FortiMail session profile and protected domain configuration shown in the exhibit; then answer the question below.


Which size limit will FortiMail apply to outbound email?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A

 

NEW QUESTION 26
Refer to the exhibit.

Which two statements about the MTAs of the domain example.com are true? (Choose two.)

  • A. The higher preference value is used to load balance more email to the mx.example.com MTA
  • B. The external MTAs will send email to mx.example.com only if mx.hosted.com is unreachable
  • C. The PriNS server should receive all email for the example.com domain
  • D. The primary MTA for the example.com domain is mx.hosted.com

Answer: B,D

 

NEW QUESTION 27
An administrator sees that an excessive amount of storage space on a FortiMail device is being used up by quarantine accounts for invalid users. The FortiMail is operating in transparent mode.
Which two FortiMail features can the administrator configure to tackle this issue? (Choose two.)

  • A. Sender address rate control
  • B. Bounce address tag verification
  • C. Automatic removal of quarantine accounts
  • D. Recipient address verification

Answer: A,C

Explanation:
Explanation/Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/9aa62d26-858d-11ea-
9384-00505692583a/FortiMail-6.4.0-Administration_Guide.pdf (322, 323)

 

NEW QUESTION 28
What are the configuration steps to enable DKIM signing for outbound messages on FortiMail? (Choose three.)

  • A. Publish the public key as a TXT record in a public DNS server
  • B. Enable DKIM check in a matching session profile
  • C. Enable DKIM check in a matching antispam profile
  • D. Enable DKIM signing for outgoing messages in a matching session profile
  • E. Generate a public/private key pair in the protected domain configuration

Answer: A,D,E

 

NEW QUESTION 29
Refer to the exhibit.

Which statement describes the pre-registered status of the IBE user [email protected]?

  • A. The user was registered by an administrator in anticipation of IBE participation.
  • B. The user account has been de-activated, and the user must register again the next time they receive an IBE email.
  • C. The user has received an IBE notification email, but has not accessed the HTTPS URL or attachment yet.
  • D. The user has completed the IBE registration process, but has not yet accessed their IBE email.

Answer: D

Explanation:
Reference: https://docs.fortinet.com/document/fortimail/6.4.2/administration-guide/470401/configuring-ibe- users

 

NEW QUESTION 30
Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.

An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)

  • A. Disable the exclusive flag in IP policy ID 1
  • B. Clear the sender reputation database using the CLI
  • C. Create an outbound recipient policy to bypass outbound email from session profile inspections
  • D. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions

Answer: A,C

 

NEW QUESTION 31
Refer to the exhibit.

Which configuration change must you make to block an offending IP address temporarily?

  • A. Add the offending IP address to the system block list
  • B. Add the offending IP address to the domain block list
  • C. Change the authentication reputation setting status to Enable
  • D. Add the offending IP address to the user block list

Answer: C

Explanation:
Explanation/Reference: https://help.fortinet.com/fweb/550/Content/FortiWeb/fortiweb-admin/blacklisting.htm

 

NEW QUESTION 32
Examine the access receive rule shown in the exhibit; then answer the question below.

Which of the following statements are true? (Choose two.)

  • A. Email from any host in the 10.0.1.0/24 subnet can match this rule
  • B. Senders must be authenticated to match this rule
  • C. Email matching this rule will be relayed
  • D. Email must originate from an example.com email address to match this rule

Answer: C,D

 

NEW QUESTION 33
Examine the nslookup output shown in the exhibit; then answer the question below.

Identify which of the following statements is true regarding the example.com domain's MTAs. (Choose two.)

  • A. External MTAs will send email to mx.example.com only if mx.hosted.com is unreachable
  • B. The higher preference value is used to load balance more email to the mx.example.com MTA
  • C. The PriNS server should receive all email for the example.com domain
  • D. The primary MTA for the example.com domain is mx.hosted.com

Answer: A,D

 

NEW QUESTION 34
A FortiMail is configured with the protected domain example.com.
On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)

Answer: A,C

Explanation:
Explanation/Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/9aa62d26-858d-11ea-
9384-00505692583a/FortiMail-6.4.0-Administration_Guide.pdf (30)

 

NEW QUESTION 35
Refer to the exhibit.

Which statement describes the impact of setting the User inactivity expiry time option to 90 days?

  • A. Registered IBE users have 90 days from the time they receive a notification email message to access their IBE email
  • B. First time IBE users must register to access their email within 90 days of receiving the notification email message
  • C. After initial registration, IBE users can access the secure portal without authenticating again for 90 days
  • D. IBE user accounts will expire after 90 days of inactivity, and must register again to access new IBE email message

Answer: D

Explanation:
Reference: https://docs.fortinet.com/document/fortimail/6.4.0/cli-reference/813529/system-encryption- ibe#config_3733402351_2450215

 

NEW QUESTION 36
FortiMail is configured with the protected domain example.com.
Which two envelope addresses will require an access receive rule, to relay for unauthenticated senders?
(Choose two.)

Answer: A,B

 

NEW QUESTION 37
Examine the FortiMail topology and access receive rule shown in the exhibit; then answer the question below.


An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which of the following settings should be used to configure the access receive rule? (Choose two.)

  • A. The Recipient pattern should be set o *@example.com
  • B. The Sender IP/netmask should be set to 10.29.1.0/24
  • C. The Authentication status should be set to Authenticated
  • D. The Action should be set to Reject

Answer: B,C

 

NEW QUESTION 38
What three configuration steps are required to enable DKIM signing for outbound messages on FortiMail?
(Choose three.)

  • A. Publish the public key as a TXT record in a public DNS server
  • B. Enable DKIM check in a matching session profile
  • C. Enable DKIM check in a matching antispam profile
  • D. Enable DKIM signing for outgoing messages in a matching session profile
  • E. Generate a public/private key pair in the protected domain configuration

Answer: A,B,E

 

NEW QUESTION 39
Refer to the exhibit.

Which two statements about the access receive rule are true? (Choose two.)

  • A. Email from any host in the 10.0.1.0/24 subnet can match this rule
  • B. Senders must be authenticated to match this rule
  • C. Email matching this rule will be relayed
  • D. Email must originate from an example.com email address to match this rule

Answer: C,D

 

NEW QUESTION 40
A FortiMail administrator is investigating a sudden increase in DSNs being delivered to the protected domain for undeliverable email messages. After searching the logs, the administrator identifies that the DSNs were not generated as a result of any outbound email sent from the protected domain.
Which FortiMail antispam technique can the administrator use to prevent this scenario?

  • A. Spam outbreak protection
  • B. Spoofed header detection
  • C. Bounce address tag validation
  • D. FortiGuard IP Reputation

Answer: A

Explanation:
Reference:
https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/769204/managing-the-mail- queue

 

NEW QUESTION 41
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)

  • A. The STARTTLS command is used to initiate SMTP over TLS
  • B. SMTPS encrypts only the body of the email message
  • C. SMTPS encrypts the identities of both the sender and receiver
  • D. SMTP over TLS connections are entirely encrypted and initiated on port 465
  • E. SMTPS connections are initiated on port 465

Answer: A,C,E

Explanation:
Reference:
https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/807960/fortimail-support-of- tls-ssl

 

NEW QUESTION 42
Refer to the exhibit.

Which two statements about how the transparent mode FortiMail device routes email for the example.com domain are true? (Choose two.)

  • A. If outgoing email messages are undeliverable, FM-1 can queue them to retry later
  • B. If incoming email messages are undeliverable, FML-1 can queue them to retry later
  • C. FML-1 will use the transparent proxy for incoming sessions
  • D. FML-1 will use the built-in MTA for outgoing sessions

Answer: A,C

 

NEW QUESTION 43
Examine the FortiMail archiving policies shown in the exhibit; then answer the question below.


Which of the following statements is true regarding this configuration? (Choose two.)

  • A. Only the [email protected] account will be able to access the archived email
  • B. Spam email will be exempt from archiving
  • C. Email sent from [email protected] will be archived
  • D. Archived email will be saved in the journal account

Answer: B,C

 

NEW QUESTION 44
Refer to the exhibit.

Which message size limit will FortiMail apply to the outbound email?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A

Explanation:
Explanation

 

NEW QUESTION 45

What IP address should the DNS MX record for this deployment resolve to?

  • A. 172.16.32.55
  • B. 172.16.32.57
  • C. 172.16.32.56
  • D. 172.16.32.1

Answer: A

 

NEW QUESTION 46
Which of the following antispam techniques queries FortiGuard for rating information? (Choose two.)

  • A. URI filter
  • B. SURBL
  • C. DNSBL
  • D. IP reputation

Answer: A,D

 

NEW QUESTION 47
Refer to the exhibit.

What two archiving actions will FortiMail take when email messages match these archive policies? (Choose two.)

  • A. FortiMail will allow only the [email protected] account to access the archived email
  • B. FortiMail will archive email sent from [email protected]
  • C. FortiMail will exempt spam email from archiving
  • D. FortiMail will save archived email in the journal account

Answer: A,D

 

NEW QUESTION 48
Which firmware upgrade method for an active-passive HA cluster ensures service outage is minimal, and there are no unnecessary failovers?

  • A. Upgrade the active unit, which will upgrade the standby unit automatically
  • B. Break the cluster, upgrade the units independently, and then form the cluster
  • C. Upgrade the standby unit, and then upgrade the active unit
  • D. Upgrade both units at the same time

Answer: D

Explanation:
Reference:
https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/725928/upgrading-firmware- on-ha-units

 

NEW QUESTION 49
......

NSE6_FML-6.2 Cert Guide PDF 100% Cover Real Exam Questions: https://www.dumptorrent.com/NSE6_FML-6.2-braindumps-torrent.html