ExamGecko
Home Home / Fortinet / NSE6_FML-7.2

Fortinet NSE6_FML-7.2 Practice Test - Questions Answers

Question list
Search
Search

List of questions

Search

Related questions











What are two disadvantages of configuring the dictionary and DLP scan rule aggressiveness too high? (Choose two.)

A.
High aggressiveness scan settings do not support executable file types.
A.
High aggressiveness scan settings do not support executable file types.
Answers
B.
It is more resource intensive
B.
It is more resource intensive
Answers
C.
More false positives could be detected.
C.
More false positives could be detected.
Answers
D.
FortiMail requires more disk space for the additional rules.
D.
FortiMail requires more disk space for the additional rules.
Answers
Suggested answer: B, C

In which FortiMail configuration object can you assign an outbound session profile?

A.
Outbound recipient policy
A.
Outbound recipient policy
Answers
B.
Inbound recipient policy
B.
Inbound recipient policy
Answers
C.
IP policy
C.
IP policy
Answers
D.
Access delivery rule
D.
Access delivery rule
Answers
Suggested answer: A

A FortiMail administrator is investigating a sudden increase in DSNs being delivered to their protected domain. After searching the logs, the administrator identifies that the DSNs were not generated because of any outbound email sent from their organization.

Which FortiMail antispam technique can the administrator use to prevent this scenario?

A.
FortiGuard IP Reputation
A.
FortiGuard IP Reputation
Answers
B.
Spoofed header detection
B.
Spoofed header detection
Answers
C.
Spam outbreak protection
C.
Spam outbreak protection
Answers
D.
Bounce address tag validation
D.
Bounce address tag validation
Answers
Suggested answer: D

Refer to the exhibit which shows a detailed history log view.

Which two actions did FortiMail take on this email message? (Choose two.)

A.
FortJMail replaced the virus content with a message
A.
FortJMail replaced the virus content with a message
Answers
B.
FortiMail modified the subject of the email message.
B.
FortiMail modified the subject of the email message.
Answers
C.
FortiMail forwarded the email to User 1 without scanning.
C.
FortiMail forwarded the email to User 1 without scanning.
Answers
D.
FortiMail sent the email message to User 1's personal quarantine.
D.
FortiMail sent the email message to User 1's personal quarantine.
Answers
Suggested answer: A, B

A FortiMail administrator is concerned about cyber criminals attempting to get sensitive information from employees using whaling phishing attacks. What option can the administrator configure to prevent these types of attacks?

A.
Impersonation analysis
A.
Impersonation analysis
Answers
B.
Dictionary profile with predefined smart identifiers
B.
Dictionary profile with predefined smart identifiers
Answers
C.
Bounce tag verification
C.
Bounce tag verification
Answers
D.
Content disarm and reconstruction
D.
Content disarm and reconstruction
Answers
Suggested answer: A

A FortiMail is configured with the protected domain example.com.

On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)

A.
A.
Answers
B.
B.
Answers
C.
C.
Answers
D.
D.
Answers
Suggested answer: A, C

Refer to the exhibits which show a topology diagram (Topology), and a configuration element (Access Control Rule).

An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain.

Which two settings should be used to configure the access receive rule? (Choose two.)

A.
The Sender IP/netmask should be set to 10.29.1.0/24.
A.
The Sender IP/netmask should be set to 10.29.1.0/24.
Answers
B.
The Action should be set to Reject
B.
The Action should be set to Reject
Answers
C.
The Recipient pattern should be set to * @example. com.
C.
The Recipient pattern should be set to * @example. com.
Answers
D.
The Authentication status should be set to Authenticated
D.
The Authentication status should be set to Authenticated
Answers
Suggested answer: A, D

Refer to the exhibit which displays a topology diagram.

Which two statements describe the built-in bridge functionality on a transparent mode FortiMail? (Choose two.)

A.
If port1. is required to process SMTP traffic, it must be configured as a routed interface.
A.
If port1. is required to process SMTP traffic, it must be configured as a routed interface.
Answers
B.
All bridge member interfaces belong to the same subnet as the management IP.
B.
All bridge member interfaces belong to the same subnet as the management IP.
Answers
C.
The management IP is permanently tied to port1, and port1 cannot be removed from the bridge.
C.
The management IP is permanently tied to port1, and port1 cannot be removed from the bridge.
Answers
D.
Any bridge member interface can be removed from the bridge and configured as a routed interface.
D.
Any bridge member interface can be removed from the bridge and configured as a routed interface.
Answers
Suggested answer: B, C

Refer to the exhibit which displays the domain configuration of a transparent mode FortiMail device.

Based on the exhibit, which two sessions are considered incoming sessions? (Choose two.)

A.
DESTINATION IP: 172.16.32.56 MAIL FROM: [email protected] RCPT TO: [email protected]
A.
DESTINATION IP: 172.16.32.56 MAIL FROM: [email protected] RCPT TO: [email protected]
Answers
B.
DESTINATION IP: 192.168.54.10 MAIL FROM: [email protected] RCPT TO: [email protected]
B.
DESTINATION IP: 192.168.54.10 MAIL FROM: [email protected] RCPT TO: [email protected]
Answers
C.
DESTINATION IP: 10.25.32.15 MAIL FROM: [email protected] RCPT TO: [email protected]
C.
DESTINATION IP: 10.25.32.15 MAIL FROM: [email protected] RCPT TO: [email protected]
Answers
D.
DESTINATION IP: 172.16.32.56 MAIL FROM: [email protected] RCPT TO: [email protected]
D.
DESTINATION IP: 172.16.32.56 MAIL FROM: [email protected] RCPT TO: [email protected]
Answers
Suggested answer: A, D

Refer to the exhibit, which shows an inbound recipient policy.

After creating the policy shown in the exhibit, an administrator discovers that clients can send unauthenticated emails using SMTP.

What must the administrator do to enforce authentication?

A.
Move this incoming recipient policy to the top of the list.
A.
Move this incoming recipient policy to the top of the list.
Answers
B.
Configure a matching IP policy with the exclusive flag enabled.
B.
Configure a matching IP policy with the exclusive flag enabled.
Answers
C.
Configure an access delivery rule to enforce authentication.
C.
Configure an access delivery rule to enforce authentication.
Answers
D.
Configure an access receive rule to verily authentication status.
D.
Configure an access receive rule to verily authentication status.
Answers
Suggested answer: D
Total 31 questions
Go to page: of 4