New 2022 Realistic Free Fortinet NSE6_FML-6.2 Exam Dump Questions & Answer
NSE6_FML-6.2 Practice Test Engine: Try These 52 Exam Questions
NEW QUESTION 10
Refer to the exhibit.
Which two statements about how the transparent mode FortiMail device routes email for the example.com domain are true? (Choose two.)
- A. FML-1 will use the transparent proxy for incoming sessions
- B. If incoming email messages are undeliverable, FML-1 can queue them to retry later
- C. If outgoing email messages are undeliverable, FM-1 can queue them to retry later
- D. FML-1 will use the built-in MTA for outgoing sessions
Answer: A,C
NEW QUESTION 11
Refer to the exhibit.
It is recommended that you configure which three access receive settings to allow outbound email from the example.comdomain on FML-1? (Choose three.)
- A. The Action should be set to Relay
- B. The Enable check box should be cleared
- C. The Sender pattern should be set to *@example.com
- D. The Recipient pattern should be set to 10.29.1.45/24
- E. The Sender IP/netmask should be set to 10.29.1.45/32
Answer: A,B,E
NEW QUESTION 12
Refer to the exhibit.
Which statement describes the impact of setting the User inactivity expiry time option to 90 days?
- A. Registered IBE users have 90 days from the time they receive a notification email message to access their IBE email
- B. First time IBE users must register to access their email within 90 days of receiving the notification email message
- C. IBE user accounts will expire after 90 days of inactivity, and must register again to access new IBE email message
- D. After initial registration, IBE users can access the secure portal without authenticating again for 90 days
Answer: C
Explanation:
Reference: https://docs.fortinet.com/document/fortimail/6.4.0/cli-reference/813529/system-encryption- ibe#config_3733402351_2450215
NEW QUESTION 13
Which FortiMail option removes embedded code components in Microsoft Word, while maintaining the original file format?
- A. Content disarm and reconstruction
- B. Impersonation analysis
- C. Behavior analysis
- D. Header analysis
Answer: A
Explanation:
Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/8c063dd3-bafe-11e9- a989-00505692583a/fortimail-admin-620.pdf (435)
NEW QUESTION 14
While testing outbound MTA functionality, an administrator discovers that all outbound email is being processed using policy IDs 1:2:0.
Which two reasons explain why the last policy ID value is 0? (Choose two.)
- A. There are no access delivery rules configured for outbound email
- B. IP policy ID 2 has the exclusive flag set
- C. There are no outgoing recipient policies configured
- D. Outbound email is being rejected
Answer: A,C
NEW QUESTION 15
FortiMail is configured with the protected domain example.com.
Which two envelope addresses will require an access receive rule, to relay for unauthenticated senders?
(Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: A,C
NEW QUESTION 16 


Which of the following statements are true regarding the transparent mode FortiMail's email routing for the example.com domain? (Choose two.)
- A. FML-1 will use the transparent proxy for incoming sessions
- B. If outgoing email messages are undeliverable, FML-1 can queue them to retry later
- C. If incoming email are undeliverable, FML-1 can queue them to retry again later
- D. FML-1 will use the built-in MTA for outgoing sessions
Answer: A,C
NEW QUESTION 17
Examine the FortiMail IBE service configuration shown in the exhibit; then answer the question below.
Which of the following statements describes the User inactivity expiry time of 90 days?
- A. Registered IBE users have 90 days from the time they receive a notification email message to access their IBE email
- B. First time IBE users must register to access their email within 90 days of receiving the notification email message
- C. IBE user accounts will expire after 90 days of inactivity, and must register again to access new IBE email message
- D. After initial registration, IBE users can access the secure portal without authenticating again for 90 days
Answer: C
NEW QUESTION 18
Refer to the exhibit.
Which two statements about the access receive rule are true? (Choose two.)
- A. Email from any host in the 10.0.1.0/24 subnet can match this rule
- B. Email must originate from an example.com email address to match this rule
- C. Senders must be authenticated to match this rule
- D. Email matching this rule will be relayed
Answer: B,D
NEW QUESTION 19
Examine the FortiMail topology and access receive rule shown in the exhibit; then answer the question below.

An administrator must enforce authentication on FML-1 for all outbound email from the example.com domain. Which of the following settings should be used to configure the access receive rule? (Choose two.)
- A. The Authentication status should be set to Authenticated
- B. The Recipient pattern should be set o *@example.com
- C. The Action should be set to Reject
- D. The Sender IP/netmask should be set to 10.29.1.0/24
Answer: A,D
NEW QUESTION 20
Examine the access receive rule shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. Email from any host in the 10.0.1.0/24 subnet can match this rule
- B. Email must originate from an example.com email address to match this rule
- C. Senders must be authenticated to match this rule
- D. Email matching this rule will be relayed
Answer: B,D
NEW QUESTION 21
Refer to the exhibit.
What are two expected outcomes if FortiMail applies this antivirus action profile to an email? (Choose two.)
- A. A replacement message will be added to the email
- B. The sanitized email will be sent to the recipient's personal quarantine
- C. The administrator will be notified of the virus detection
- D. Virus content will be removed from the email
Answer: A,B
NEW QUESTION 22
Examine the FortiMail user webmail interface shown in the exhibit; then answer the question below.
Which one of the following statements is true regarding this server mode FortiMail's configuration?
- A. The administrator has configured an inbound recipient policy with a customized resource profile
- B. The protected domain-level service settings have been modified to allow access to the domain address book
- C. This user's account has a customized access profile applied that allows access to the personal address book
- D. The administrator has not made any changes to the default address book access privileges
Answer: B
NEW QUESTION 23
What three configuration steps are required to enable DKIM signing for outbound messages on FortiMail?
(Choose three.)
- A. Generate a public/private key pair in the protected domain configuration
- B. Enable DKIM check in a matching antispam profile
- C. Publish the public key as a TXT record in a public DNS server
- D. Enable DKIM check in a matching session profile
- E. Enable DKIM signing for outgoing messages in a matching session profile
Answer: A,C,D
NEW QUESTION 24
Examine the FortiMail archiving policies shown in the exhibit; then answer the question below.

Which of the following statements is true regarding this configuration? (Choose two.)
- A. Only the [email protected] account will be able to access the archived email
- B. Archived email will be saved in the journal account
- C. Email sent from [email protected] will be archived
- D. Spam email will be exempt from archiving
Answer: C,D
NEW QUESTION 25
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)
- A. SMTPS encrypts only the body of the email message
- B. SMTP over TLS connections are entirely encrypted and initiated on port 465
- C. SMTPS connections are initiated on port 465
- D. SMTPS encrypts the identities of both the sender and receiver
- E. The STARTTLS command is used to initiate SMTP over TLS
Answer: C,D,E
Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/807960/fortimail- support-of-tls-ssl
NEW QUESTION 26
Examine the FortiMail topology and IP-based policy shown in the exhibit; then answer the question below.
An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the Mail Server started filing up with undeliverable email. What changes should the administrator make to fix this issue? (Choose two.)
- A. Clear the sender reputation database using the CLI
- B. Disable the exclusive flag in IP policy ID 1
- C. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
- D. Create an outbound recipient policy to bypass outbound email from session profile inspections
Answer: B,D
NEW QUESTION 27
Refer to the exhibit.
Which message size limit will FortiMail apply to the outbound email?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: D
Explanation:
Explanation
NEW QUESTION 28
Refer to the exhibit.
Which message size limit will FortiMail apply to the outbound email?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: D
NEW QUESTION 29
......
Guaranteed Success in NSE 6 Network Security Specialist NSE6_FML-6.2 Exam Dumps: https://www.actual4dump.com/Fortinet/NSE6_FML-6.2-actualtests-dumps.html