Latest [Jul 31, 2022] NSE6_FML-6.4 Exam Dumps - Valid and Updated Dumps
Free Sales Ending Soon - 100% Valid NSE6_FML-6.4 Exam Dumps with 57 Questions
NEW QUESTION 15
If you are using the built-in MTA to process email in transparent mode, which two statements about FortiMail behavior are true? (Choose two.)
- A. If you disable the built-in MTA, FortiMail will use its transparent proxies to deliver email
- B. MUAs need to be configured to connect to the built-in MTA to send email
- C. FortiMail can queue undeliverable messages and generate DSNs
- D. FortiMail ignores the destination set by the sender, and uses its own MX record lookup to deliver email
Answer: C,D
NEW QUESTION 16
Which of the following statements are true regarding FortiMail's behavior when using the built-in MTA to process email in transparent mode? (Choose two.)
- A. If you disable the built-in MTA, FortiMail will use its transparent proxies to deliver email
- B. MUAs need to be configured to connect to the built-in MTA to send email
- C. FortiMail ignores the destination set by the sender and uses its own MX record lookup to deliver email
- D. FortiMail can queue undeliverable messages and generate DSNs
Answer: C,D
NEW QUESTION 17
Refer to the exhibit.
Which statement describes the pre-registered status of the IBE user [email protected]?
- A. The user account has been de-activated, and the user must register again the next time they receive an IBE email.
- B. The user has completed the IBE registration process, but has not yet accessed their IBE email.
- C. The user was registered by an administrator in anticipation of IBE participation.
- D. The user has received an IBE notification email, but has not accessed the HTTPS URL or attachment yet.
Answer: B
NEW QUESTION 18
FortiMail is configured with the protected domain example.com.
Which two envelope addresses will require an access receive rule, to relay for unauthenticated senders? (Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: A,D
NEW QUESTION 19
What three configuration steps are required to enable DKIM signing for outbound messages on FortiMail? (Choose three.)
- A. Enable DKIM check in a matching antispam profile
- B. Enable DKIM check in a matching session profile
- C. Generate a public/private key pair in the protected domain configuration
- D. Publish the public key as a TXT record in a public DNS server
- E. Enable DKIM signing for outgoing messages in a matching session profile
Answer: B,C,D
NEW QUESTION 20
What are the configuration steps to enable DKIM signing for outbound messages on FortiMail? (Choose three.)
- A. Enable DKIM check in a matching session profile
- B. Enable DKIM check in a matching antispam profile
- C. Generate a public/private key pair in the protected domain configuration
- D. Publish the public key as a TXT record in a public DNS server
- E. Enable DKIM signing for outgoing messages in a matching session profile
Answer: C,D,E
Explanation:
DKIM Signing for Outbound Email
* To configure DKIM signing for outgoing messages, you must first generate a public and private key pair for the domain
* DKIM signatures are domain specific
* FortiMail generates and stores the private key, and uses it to generate the DKIM signature
- Download the public key and publish to your external DNS server
- Enable sign outgoing messages with a DKIM signature
NEW QUESTION 21
Examine the message column of a log cross search result of an inbound email shown in the exhibit; then answer the question below
Based on logs, which of the following statements are true? (Choose two.)
- A. The logs were generated by a server mode FortiMail
- B. The FortiMail is experiencing issues delivering the email to the back-end mail server
- C. The logs were generated by a gateway or transparent mode FortiMail
- D. The FortiMail is experiencing issues accepting the connection from the remote sender
Answer: B,C
NEW QUESTION 22
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)
- A. SMTP over TLS connections are entirely encrypted and initiated on port 465
- B. SMTPS connections are initiated on port 465
- C. SMTPS encrypts only the body of the email message
- D. SMTPS encrypts the identities of both the sender and receiver
- E. The STARTTLS command is used to initiate SMTP over TLS
Answer: B,D,E
NEW QUESTION 23
Which two antispam techniques query FortiGuard for rating information? (Choose two.)
- A. SURBL
- B. URI filter
- C. DNSBL
- D. IP reputation
Answer: A,C
NEW QUESTION 24
Refer to the exhibit.
Which message size limit will FortiMail apply to the outbound email?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: B
NEW QUESTION 25
Refer to the exhibit.
Which two statements about the mail server settings are true? (Choose two.)
- A. FortiMail will accept SMTPS connections
- B. FortiMail will support the STARTTLS extension
- C. FortiMail will enforce SMTPS on all outbound sessions
- D. FortiMail will drop any inbound plaintext SMTP connection
Answer: A,D
NEW QUESTION 26
A FortiMail administrator is investigating a sudden increase in DSNs being delivered to the protected domain for undeliverable email messages. After searching the logs, the administrator identifies that the DSNs were not generated as a result of any outbound email sent from the protected domain.
Which FortiMail antispam technique can the administrator use to prevent this scenario?
- A. FortiGuard IP Reputation
- B. Spam outbreak protection
- C. Spoofed header detection
- D. Bounce address tag validation
Answer: B
NEW QUESTION 27
While testing outbound MTA functionality, an administrator discovers that all outbound email is being processed using policy IDs 1:2:0.
Which two reasons explain why the last policy ID value is 0? (Choose two.)
- A. IP policy ID 2 has the exclusive flag set
- B. There are no access delivery rules configured for outbound email
- C. There are no outgoing recipient policies configured
- D. Outbound email is being rejected
Answer: B,C
NEW QUESTION 28
Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.
An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)
- A. Create an outbound recipient policy to bypass outbound email from session profile inspections
- B. Disable the exclusive flag in IP policy ID 1
- C. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
- D. Clear the sender reputation database using the CLI
Answer: A,B
NEW QUESTION 29
Which firmware upgrade method for an active-passive HA cluster ensures service outage is minimal, and there are no unnecessary failovers?
- A. Upgrade the standby unit, and then upgrade the active unit
- B. Upgrade both units at the same time
- C. Upgrade the active unit, which will upgrade the standby unit automatically
- D. Break the cluster, upgrade the units independently, and then form the cluster
Answer: B
NEW QUESTION 30
......
NSE6_FML-6.4 Exam Dumps - 100% Marks In NSE6_FML-6.4 Exam: https://testking.realvce.com/NSE6_FML-6.4-VCE-file.html