New Actual4Cert NSE6_FML-6.4 Exam Questions| Real NSE6_FML-6.4 Dumps Updated on May 03, 2023
NSE6_FML-6.4 Braindumps – NSE6_FML-6.4 Questions to Get Better Grades
NEW QUESTION 29
Examine the FortiMail IBE service configuration shown in the exhibit; then answer the question below.
Which of the following statements describes the User inactivity expiry time of 90 days?
- A. IBE user accounts will expire after 90 days of inactivity, and must register again to access new IBE email message
- B. After initial registration, IBE users can access the secure portal without authenticating again for 90 days
- C. First time IBE users must register to access their email within 90 days of receiving the notification email message
- D. Registered IBE users have 90 days from the time they receive a notification email message to access their IBE email
Answer: A
NEW QUESTION 30
A FortiMail administrator is concerned about cyber criminals attempting to get sensitive information from employees using whaling phishing attacks.
What option can the administrator configure to prevent these types of attacks?
- A. Impersonation analysis
- B. Bounce tag verification
- C. Content disarm and reconstruction
- D. Dictionary profile with predefined smart identifiers
Answer: A
NEW QUESTION 31
What are the configuration steps to enable DKIM signing for outbound messages on FortiMail? (Choose three.)
- A. Enable DKIM signing for outgoing messages in a matching session profile
- B. Enable DKIM check in a matching antispam profile
- C. Publish the public key as a TXT record in a public DNS server
- D. Generate a public/private key pair in the protected domain configuration
- E. Enable DKIM check in a matching session profile
Answer: A,C,D
Explanation:
DKIM Signing for Outbound Email
* To configure DKIM signing for outgoing messages, you must first generate a public and private key pair for the domain
* DKIM signatures are domain specific
* FortiMail generates and stores the private key, and uses it to generate the DKIM signature
- Download the public key and publish to your external DNS server
- Enable sign outgoing messages with a DKIM signature
NEW QUESTION 32
Which of the following antispam techniques queries FortiGuard for rating information? (Choose two.)
- A. URI filter
- B. DNSBL
- C. IP reputation
- D. SURBL
Answer: A,C
NEW QUESTION 33
Examine the access receive rule shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. Email from any host in the 10.0.1.0/24 subnet can match this rule
- B. Senders must be authenticated to match this rule
- C. Email must originate from an example.com email address to match this rule
- D. Email matching this rule will be relayed
Answer: C,D
NEW QUESTION 34
Examine the configured routes shown in the exhibit; then answer the question below.
Which interface will FortiMail use to forward an email message destined for 10.1.100.252?
- A. port1
- B. port2
- C. port3
- D. port4
Answer: B
NEW QUESTION 35
Examine the FortiMail IBE users shown in the exhibit; then answer the question below
Which one of the following statements describes the Pre-registered status of the IBE user [email protected]?
- A. The user account has been de-activated, and the user must register again the next time they receive an IBE email
- B. The user has received an IBE notification email, but has not accessed the HTTPS URL or attachment yet
- C. The user has completed the IBE registration process but has not yet accessed their IBE email
- D. The user was registered by an administrator in anticipation of IBE participation
Answer: B
NEW QUESTION 36
A FortiMail is configured with the protected domain example.com.
On this FortiMail, which two envelope addresses are considered incoming? (Choose two.)
- A. MAIL FROM: [email protected] RCPT TO: [email protected]
- B. MAIL FROM: [email protected] RCPT TO: [email protected]
- C. MAIL FROM: [email protected] RCPT TO: [email protected]
- D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: A,C
NEW QUESTION 37
Which firmware upgrade method for an active-passive HA cluster ensures service outage is minimal, and there are no unnecessary failovers?
- A. Upgrade the standby unit, and then upgrade the active unit
- B. Break the cluster, upgrade the units independently, and then form the cluster
- C. Upgrade both units at the same time
- D. Upgrade the active unit, which will upgrade the standby unit automatically
Answer: C
NEW QUESTION 38
Examine the FortMail mail server settings shown in the exhibit; then answer the question below.
Which of the following statements are true? (Choose two.)
- A. mx.example.com will enforce SMTPS on all outbound sessions
- B. mx.example.com will accept SMTPS connections
- C. mx.example.com will display STARTTLS as one of the supported commands in SMTP sessions
- D. mx.example.com will drop any inbound plaintext SMTP connection
Answer: B,C
NEW QUESTION 39
Refer to the exhibit.
What IP address should the DNS MX record for this deployment resolve to?
- A. 172.16.32.1
- B. 172.16.32.56
- C. 172.16.32.57
- D. 172.16.32.55
Answer: D
NEW QUESTION 40
Refer to the exhibit.
MTA-1 is delivering an email intended for User 1 to MTA-2.
Which two statements about protocol usage between the devices are true? (Choose two.)
- A. User 1 will use logs were generated load the email message from MTA-2
- B. MTA-1 will use SMTP to deliver the email message to MTA-2
- C. MTA-2 will use IMAP to receive the email message from MTA-1
- D. MTA-1 will use POP3 to deliver the email message to User 1 directly
Answer: A,B
NEW QUESTION 41
Refer to the exhibit.


Which of the following statements are true regarding the transparent mode FortiMail's email routing for the example.com domain? (Choose two.)
- A. FML-1 will use the built-in MTA for outgoing sessions
- B. FML-1 will use the transparent proxy for incoming sessions
- C. If outgoing email messages are undeliverable, FML-1 can queue them to retry later
- D. If incoming email are undeliverable, FML-1 can queue them to retry again later
Answer: B,D
NEW QUESTION 42
Examine the FortiMail DLP scan rule shown in the exhibit; then answer the question below.
Which of the following statements is true regarding this configuration? (Choose two.)
- A. An email message containing the words "Credit Card" in the subject will trigger this scan rule
- B. An email must contain credit card numbers in the body, attachment, and subject to trigger this scan rule
- C. If an email is sent from [email protected] the action will be applied without matching any conditions
- D. An email message containing credit card numbers in the body will trigger this scan rule
Answer: A,D
NEW QUESTION 43
Which two CLI commands, if executed, will erase all data on the log disk partition? (Choose two.)
- A. execute formatmaildisk_backup
- B. execute formatlogdisk
- C. execute formatmaildisk
- D. execute partitionlogdisk 40
Answer: B,D
NEW QUESTION 44
While reviewing logs, an administrator discovers that an incoming email was processed using policy IDs 0:4:9.
Which two scenarios will generate this policy ID? (Choose two.)
- A. FortiMail applies the default behavior for relaying inbound email
- B. Email was processed using IP policy ID 4
- C. FortiMail configuration is missing an access delivery rule
- D. Incoming recipient policy ID 9 has the exclusive flag set
Answer: A,C
NEW QUESTION 45
Refer to the exhibit.
It is recommended that you configure which three access receive settings to allow outbound email from the example.com domain on FML-1? (Choose three.)
- A. The Action should be set to Relay
- B. The Recipient pattern should be set to 10.29.1.45/24
- C. The Sender pattern should be set to *@example.com
- D. The Enable check box should be cleared
- E. The Sender IP/netmask should be set to 10.29.1.45/32
Answer: A,D,E
NEW QUESTION 46
Refer to the exhibit.
Which two statements about how the transparent mode FortiMail device routes email for the example.com domain are true? (Choose two.)
- A. If incoming email messages are undeliverable, FML-1 can queue them to retry later
- B. FML-1 will use the built-in MTA for outgoing sessions
- C. FML-1 will use the transparent proxy for incoming sessions
- D. If outgoing email messages are undeliverable, FM-1 can queue them to retry later
Answer: C,D
NEW QUESTION 47
Refer to the exhibit.
Which message size limit will FortiMail apply to the outbound email?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: A
NEW QUESTION 48
Which three statements about SMTPS and SMTP over TLS are true? (Choose three.)
- A. SMTP over TLS connections are entirely encrypted and initiated on port 465
- B. SMTPS encrypts the identities of both the sender and receiver
- C. The STARTTLS command is used to initiate SMTP over TLS
- D. SMTPS encrypts only the body of the email message
- E. SMTPS connections are initiated on port 465
Answer: B,C,E
NEW QUESTION 49
Refer to the exhibit.
Which two statements about the access receive rule are true? (Choose two.)
- A. Email from any host in the 10.0.1.0/24 subnet can match this rule
- B. Senders must be authenticated to match this rule
- C. Email must originate from an example.com email address to match this rule
- D. Email matching this rule will be relayed
Answer: C,D
NEW QUESTION 50
Examine the FortiMail active-passive cluster shown in the exhibit; then answer the question below.

Which of the following parameters are recommended for the Primary FortiMail's HA interface configuration? (Choose three.)
- A. Virtual IP address: 172.16.32.55/24
- B. Heartbeat status: Primary
- C. Virtual IP action: Use
- D. Peer IP address: 172.16.32.57
- E. Enable port monitor: disable
Answer: A,B,C
NEW QUESTION 51
......
NSE6_FML-6.4 Exam Dumps - Try Best NSE6_FML-6.4 Exam Questions: https://www.actual4cert.com/NSE6_FML-6.4-real-questions.html
Get New NSE6_FML-6.4 Certification – Valid Exam Dumps Questions: https://drive.google.com/open?id=1H0_zV9kCd76Imkr2dtbi5m9b1V6s_fOW