100% Pass Top-selling NSE6_FML-6.2 Exams - New 2021 Fortinet Pratice Exam
NSE 6 Network Security Specialist Dumps NSE6_FML-6.2 Exam for Full Questions - Exam Study Guide
NEW QUESTION 28
Refer to the exhibit.
Which two statements about the access receive rule are true? (Choose two.)
- A. Senders must be authenticated to match this rule
- B. Email from any host in the 10.0.1.0/24 subnet can match this rule
- C. Email must originate from an example.com email address to match this rule
- D. Email matching this rule will be relayed
Answer: C,D
NEW QUESTION 29 


Which of the following statements are true regarding the transparent mode FortiMail's email routing for the example.com domain? (Choose two.)
- A. If outgoing email messages are undeliverable, FML-1 can queue them to retry later
- B. FML-1 will use the built-in MTA for outgoing sessions
- C. If incoming email are undeliverable, FML-1 can queue them to retry again later
- D. FML-1 will use the transparent proxy for incoming sessions
Answer: C,D
NEW QUESTION 30
An organization has different groups of users with different needs in email functionality, such as address book access, mobile device access, email retention periods, and disk quotas.
Which FortiMail feature specific to server mode can be used to accomplish this?
- A. Domain-level service settings
- B. Address book management options
- C. Resource profiles
- D. Access profiles
Answer: D
NEW QUESTION 31
While testing outbound MTA functionality, an administrator discovers that all outbound email is being processed using policy IDs 1:2:0.
Which two reasons explain why the last policy ID value is 0? (Choose two.)
- A. There are no outgoing recipient policies configured
- B. Outbound email is being rejected
- C. There are no access delivery rules configured for outbound email
- D. IP policy ID 2 has the exclusive flag set
Answer: A,C
NEW QUESTION 32
Examine the access receive rule shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. Senders must be authenticated to match this rule
- B. Email from any host in the 10.0.1.0/24 subnet can match this rule
- C. Email must originate from an example.com email address to match this rule
- D. Email matching this rule will be relayed
Answer: C,D
NEW QUESTION 33
Refer to the exhibit.
Which two statements about how the transparent mode FortiMail device routes email for the example.com domain are true? (Choose two.)
- A. If outgoing email messages are undeliverable, FM-1 can queue them to retry later
- B. FML-1 will use the built-in MTA for outgoing sessions
- C. FML-1 will use the transparent proxy for incoming sessions
- D. If incoming email messages are undeliverable, FML-1 can queue them to retry later
Answer: A,C
NEW QUESTION 34
FortiMail is configured with the protected domain example.com.
Which two envelope addresses will require an access receive rule, to relay for unauthenticated senders?
(Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: A,D
NEW QUESTION 35
An administrator sees that an excessive amount of storage space on a FortiMail device is being used up by quarantine accounts for invalid users. The FortiMail is operating in transparent mode.
Which two FortiMail features can the administrator configure to tackle this issue? (Choose two.)
- A. Bounce address tag verification
- B. Sender address rate control
- C. Automatic removal of quarantine accounts
- D. Recipient address verification
Answer: B,C
Explanation:
Explanation/Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/9aa62d26-858d-11ea-
9384-00505692583a/FortiMail-6.4.0-Administration_Guide.pdf (322, 323)
NEW QUESTION 36
Examine the FortiMail DLP scan rule shown in the exhibit; then answer the question below.
Which of the following statements is true regarding this configuration? (Choose two.)
- A. An email message containing credit card numbers in the body will trigger this scan rule
- B. An email message containing the words "Credit Card" in the subject will trigger this scan rule
- C. An email must contain credit card numbers in the body, attachment, and subject to trigger this scan rule
- D. If an email is sent from [email protected] the action will be applied without matching any conditions
Answer: A,B
NEW QUESTION 37
A FortiMail is configured with the protected domain example.com.
On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: C,D
Explanation:
Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/9aa62d26-858d-11ea-9384-00505692583a/FortiMail-6.4.0-Administration_Guide.pdf (30)
NEW QUESTION 38
Which of the following statements are true regarding FortiMail's behavior when using the built-in MTA to process email in transparent mode? (Choose two.)
- A. MUAs need to be configured to connect to the built-in MTA to send email
- B. FortiMail can queue undeliverable messages and generate DSNs
- C. If you disable the built-in MTA, FortiMail will use its transparent proxies to deliver email
- D. FortiMail ignores the destination set by the sender and uses its own MX record lookup to deliver email
Answer: C,D
NEW QUESTION 39
A FortiMail administrator is investigating a sudden increase in DSNs being delivered to the protected domain for undeliverable email messages. After searching the logs, the administrator identifies that the DSNs were not generated as a result of any outbound email sent from the protected domain.
Which FortiMail antispam technique can the administrator use to prevent this scenario?
- A. Spoofed header detection
- B. FortiGuard IP Reputation
- C. Bounce address tag validation
- D. Spam outbreak protection
Answer: D
Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/769204/managing-the- mail-queue
NEW QUESTION 40
Which two antispam techniques query FortiGuard for rating information? (Choose two.)
- A. SURBL
- B. URI filter
- C. DNSBL
- D. IP reputation
Answer: A,C
Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortimail/6.4.0/administration-guide/352990/configuring- antispam-profiles-and-antispam-action-profiles
NEW QUESTION 41
Which firmware upgrade method for an active-passive HA cluster ensures service outage is minimal, and there are no unnecessary failovers?
- A. Upgrade the standby unit, and then upgrade the active unit
- B. Upgrade both units at the same time
- C. Upgrade the active unit, which will upgrade the standby unit automatically
- D. Break the cluster, upgrade the units independently, and then form the cluster
Answer: B
Explanation:
Reference:
https://docs.fortinet.com/document/fortimail/6.2.0/administration-guide/725928/upgrading-firmware- on-ha-units
NEW QUESTION 42
Examine the message column of a log cross search result of an inbound email shown in the exhibit; then answer the question below
Based on logs, which of the following statements are true? (Choose two.)
- A. The FortiMail is experiencing issues delivering the email to the back-end mail server
- B. The logs were generated by a gateway or transparent mode FortiMail
- C. Thelogs were generatedby a server mode FortiMail
- D. The FortiMail is experiencing issues accepting the connection from the remote sender
Answer: C,D
NEW QUESTION 43
Examine the FortiMail session profile and protected domain configuration shown in the exhibit; then answer the question below.

Which size limit will FortiMail apply to outbound email?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: D
NEW QUESTION 44
Refer to the exhibit.
An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the mail server starts filling up with undeliverable email. What two changes must the administrator make to fix this issue? (Choose two.)
- A. Create an outbound recipient policy to bypass outbound email from session profile inspections
- B. Clear the sender reputation database using the CLI
- C. Disable the exclusive flag in IP policy ID 1
- D. Apply a session profile with sender reputation disabled on a separate IP policy for outbound sessions
Answer: C,D
NEW QUESTION 45
Examine the FortiMail antivirus action profile shown in the exhibit; then answer the question below.
What is the expected outcome if FortiMail applies this action profile to an email? (Choose two.)
- A. The administrator will be notified of the virus detection
- B. A replacement message will be added to the email
- C. Virus content will be removed from the email
- D. The sanitized email will be sent to the recipient's personal quarantine
Answer: B,C
NEW QUESTION 46
......
Authentic Best resources for NSE6_FML-6.2 Online Practice Exam: https://www.prep4sureguide.com/NSE6_FML-6.2-prep4sure-exam-guide.html