NSE6_FML-6.2 exam questions for practice in 2022 Updated 52 Questions
Updated Aug-2022 Premium NSE6_FML-6.2 Exam Engine pdf - Download Free Updated 52 Questions
NEW QUESTION 12
What IP address should the DNS MX record for this deployment resolve to?
- A. 172.16.32.56
- B. 172.16.32.55
- C. 172.16.32.57
- D. 172.16.32.1
Answer: B
NEW QUESTION 13
Examine the FortMail mail server settings shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. mx.example.com will display STARTTLS as one of the supported commands in SMTP sessions
- B. mx.example.com will enforce SMTPS on all outbound sessions
- C. mx.example.com will accept SMTPS connections
- D. mx.example.com will drop any inbound plaintext SMTP connection
Answer: A,C
NEW QUESTION 14
Examine the FortMail mail server settings shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. mx.example.com will display STARTTLS as one of the supported commands in SMTP sessions
- B. mx.example.com will enforce SMTPS on all outbound sessions
- C. mx.example.com will accept SMTPS connections
- D. mx.example.com will drop any inbound plaintext SMTP connection
Answer: A,C
NEW QUESTION 15
Refer to the exhibit.
Which two statements about the access receive rule are true? (Choose two.)
- A. Email from any host in the 10.0.1.0/24 subnet can match this rule
- B. Email matching this rule will be relayed
- C. Email must originate from an example.com email address to match this rule
- D. Senders must be authenticated to match this rule
Answer: B,C
NEW QUESTION 16
Refer to the exhibit.
Which message size limit will FortiMail apply to the outbound email?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: A
Explanation:
Explanation
NEW QUESTION 17
Examine the FortiMail topology and access receive rule shown in the exhibit; then answer the question below.

An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which of the following settings should be used to configure the access receive rule? (Choose two.)
- A. The Sender IP/netmask should be set to 10.29.1.0/24
- B. The Recipient pattern should be set o *@example.com
- C. The Authentication status should be set to Authenticated
- D. The Action should be set to Reject
Answer: A,C
NEW QUESTION 18
FortiMail is configured with the protected domain example.com.
Which two envelope addresses will require an access receive rule, to relay for unauthenticated senders?
(Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: A,B
NEW QUESTION 19
Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.
An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)
- A. Create an outbound recipient policy to bypass outbound email from session profile inspections
- B. Clear the sender reputation database using the CLI
- C. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
- D. Disable the exclusive flag in IP policy ID 1
Answer: A,D
NEW QUESTION 20
While reviewing logs, an administrator discovers that an incoming email was processed using policy IDs
0:4:9.
Which two scenarios will generate this policy ID? (Choose two.)
- A. Incoming recipient policy ID 9 has the exclusive flag set
- B. FortiMail configuration is missing an access delivery rule
- C. FortiMail applies the default behavior for relaying inbound email
- D. Email was processed using IP policy ID 4
Answer: B,C
NEW QUESTION 21
Which FortiMail option removes embedded code components in Microsoft Word, while maintaining the original file format?
- A. Behavior analysis
- B. Header analysis
- C. Content disarm and reconstruction
- D. Impersonation analysis
Answer: C
NEW QUESTION 22
Refer to the exhibit.
It is recommended that you configure which three access receive settings to allow outbound email from the example.comdomain on FML-1? (Choose three.)
- A. The Recipient pattern should be set to 10.29.1.45/24
- B. The Sender IP/netmask should be set to 10.29.1.45/32
- C. The Enable check box should be cleared
- D. The Action should be set to Relay
- E. The Sender pattern should be set to *@example.com
Answer: B,C,D
NEW QUESTION 23
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)
- A. SMTPS encrypts only the body of the email message
- B. SMTP over TLS connections are entirely encrypted and initiated on port 465
- C. The STARTTLS command is used to initiate SMTP over TLS
- D. SMTPS encrypts the identities of both the sender and receiver
- E. SMTPS connections are initiated on port 465
Answer: C,D,E
Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/807960/fortimail- support-of-tls-ssl
NEW QUESTION 24
Refer to the exhibit.
It is recommended that you configure which three access receive settings to allow outbound email from the example.com domain on FML-1? (Choose three.)
- A. The Recipient pattern should be set to 10.29.1.45/24
- B. The Sender IP/netmask should be set to 10.29.1.45/32
- C. The Enable check box should be cleared
- D. The Action should be set to Relay
- E. The Sender pattern should be set to *@example.com
Answer: B,C,D
NEW QUESTION 25
Which of the following statements are true regarding FortiMail's behavior when using the built-in MTA to process email in transparent mode? (Choose two.)
- A. FortiMail can queue undeliverable messages and generate DSNs
- B. If you disable the built-in MTA, FortiMail will use its transparent proxies to deliver email
- C. FortiMail ignores the destination set by the sender and uses its own MX record lookup to deliver email
- D. MUAs need to be configured to connect to the built-in MTA to send email
Answer: B,C
NEW QUESTION 26
Which two CLI commands, if executed, will erase all data on the log disk partition? (Choose two.)
- A. execute formatmaildisk_backup
- B. execute formatmaildisk
- C. execute partitionlogdisk 40
- D. execute formatlogdisk
Answer: C,D
Explanation:
Reference: https://docs.fortinet.com/document/fortimail/6.2.0/cli-reference/588825/formatlogdisk
NEW QUESTION 27
What three configuration steps are required to enable DKIM signing for outbound messages on FortiMail?
(Choose three.)
- A. Enable DKIM signing for outgoing messages in a matching session profile
- B. Enable DKIM check in a matching antispam profile
- C. Enable DKIM check in a matching session profile
- D. Generate a public/private key pair in the protected domain configuration
- E. Publish the public key as a TXT record in a public DNS server
Answer: C,D,E
NEW QUESTION 28
Refer to the exhibit.
Which two statements about how the transparent mode FortiMail device routes email for the example.com domain are true? (Choose two.)
- A. If incoming email messages are undeliverable, FML-1 can queue them to retry later
- B. FML-1 will use the built-in MTA for outgoing sessions
- C. If outgoing email messages are undeliverable, FM-1 can queue them to retry later
- D. FML-1 will use the transparent proxy for incoming sessions
Answer: C,D
NEW QUESTION 29
Examine the FortiMail DLP scan rule shown in the exhibit; then answer the question below.
Which of the following statements is true regarding this configuration? (Choose two.)
- A. An email message containing the words "Credit Card" in the subject will trigger this scan rule
- B. An email message containing credit card numbers in the body will trigger this scan rule
- C. If an email is sent from [email protected] the action will be applied without matching any conditions
- D. An email must contain credit card numbers in the body, attachment, and subject to trigger this scan rule
Answer: A,B
NEW QUESTION 30
A FortiMail is configured with the protected domain example.com.
On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: B,D
NEW QUESTION 31
Which two antispam techniques query FortiGuard for rating information? (Choose two.)
- A. DNSBL
- B. URI filter
- C. IP reputation
- D. SURBL
Answer: A,D
Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.4.0/administration-guide/352990/configuring- antispam-profiles-and-antispam-action-profiles
NEW QUESTION 32
While reviewing logs, an administrator discovers that an incoming email was processed using policy IDs 0:4:9.
Which two scenarios will generate this policy ID? (Choose two.)
- A. Incoming recipient policy ID 9 has the exclusive flag set
- B. FortiMail configuration is missing an access delivery rule
- C. FortiMail applies the default behavior for relaying inbound email
- D. Email was processed using IP policy ID 4
Answer: B,C
NEW QUESTION 33
......
Authentic NSE6_FML-6.2 Dumps With 100% Passing Rate Practice Tests Dumps: https://examcollection.actualcollection.com/NSE6_FML-6.2-exam-questions.html