NSE6 Questions And Answers


Exam Name: Fortinet Network Security Expert 6

Updated: 2020-09-30

Question No : 1

An organization has different groups of users with different needs in email functionality, such as address book access, mobile device access, email retention periods, and disk quotas. Which FortiMail feature specific to server mode can be used to accomplish this? A. Resource profile. B. Address Book Management options C. Access profile D. Domain-level service settings.
Answer: D

Question No : 2

Examine the FortiMail topology and protected domain configuration shown in the exhibit;

Which of the following statements are true regarding the transparent mode FortiMail email routing for the exanple.com domain? (Choose two.)
A. FML-1 will use the built-in MTA for outgoing sessions.
B. FMlL-1 will use the transparent proxy for incoming sessions.
C. If incoming email are undeliverable, FML-1 can queue them to retry again later.
D. If outgoing email messages are undeliverable, FML-1 can queue them to retry later.
Answer: AB

Question No : 3

Which statements are true for the EAP-TTLS authentication method? (Choose two.)
A. Uses mutual authentication
B. Validates only the server (FortiAuthenticator) identity
C. Requires an EAP server certificate
D. Supports a port access control (wired) solution only
Answer: A,C

Question No : 4

Which of the following CLI commands, if executed, will erase all data on the log disk partition? (Choose two.)
A. execute   formatmaildisk
B. execute   formatmaildisk_backup
C. execute   formatlogdisk
D. execute   partitionlogdisk 40
Answer: D

Question No : 5

Which of the following statements regarding SMTPS and SMTP over TLS are true? (Choose three.)
A. In an SMTPS session, the identities of both sender and receiver are encrypted.
B. SMTPS connections are initiated on port 465.
C. SMTP over TLS connections are entirely encrypted and initiated on port 465.
D. The STARTTLS command is used to initiate SMTP over TLS.
E. SMTPS encrypts the body of the email message, where the most sensitive content exists.
Answer: ABD

Question No : 6

Examine the FortiMail IBE service configuration shown in the exhibit; then answer the question below.

Which of the following statements describes the User inactivity expiry time of 90 days?
A. First time IBE users must register to access their email within 90 days of receiving the notification email message.
B. After initial registration, IBE users can access the secure portal without authenticating again for 90 days.
C. Registration IBE users have 90 days from the time they receive a notification email message to access their IBE email.
D. IBE user accounts will expire after 90 days of inactivity, and must register again to access new IBE email message.
Answer: D

Question No : 7

Which of the following antispam techniques queries FortiGuard for rating information? (Choose two.) A. URI filter B. IP reputation C. SURBL D. DNSBL
Answer: AB

Question No : 8

A FortiMail is configured with the protected domain "example.com". For this FortiMail, which of the following envelop addresses are considered incoming?
A. MAIL FROM: [email protected] RCPT TO: [email protected]
B. MAIL FROM: [email protected] RCPT TO: [email protected]
C. MAIL FROM: [email protected] RCPT TO: [email protected]
D. MAIL FROM: [email protected] RCPT TO: [email protected]
Answer: AC

Question No : 9

Which two types of digital certificates can you create in FortiAuthenticator? (Choose two.)
A. 3rd-party root certificate
B. Local services certificate
C. User certificate
Answer: B,C

Question No : 10

You want to allow guests to authenticate to your network through Facebook. What configuration is required on FortiAuthenticator? (Choose two.)
A. A RADIUS client, in order to enable the social portal
B. A user group
C. An external authentication portal
D. A Facebook key and secret
Answer: A,C

Question No : 11

Examine the FortiMail IBE users shown in the exhibit; then answer the question below.

Which one of the following statements describes the Pre-registered status of the IBE user [email protected]?
A. The user was registered by an administrator in anticipation of IBE participation.
B. The user has completed the IBE registration process but has not yet accessed then IBE email.
C. The user has received an IBE notification email, but has not accessed the HTTPS URL or attachment yet.
D. The user account has been de-activated, and the user must register again the next time they receive an IBE email
Answer: C

Question No : 12

Examine the FortiMail archiving policies shown in the exhibit; then answer the question below.

Which of the following statements is true regarding this configuration? (Choose two.)
A. Spam email will be exempt from archiving.
B. Email sent from [email protected] will be archived
C. Archived email will be saved in the journal account.
D. Only the [email protected] account will be able to access the archived email.
Answer: AC

Question No : 13

Examine the FortiMail antivirus action profile shown in the exhibit; then answer the question below.

What is the expected outcome if FortiMail applies this action profile to an email? (Choose two.)
A. The sanitized email will be sent to the recipient¡¯s personal quarantine.
B. A replacement message will be added to the email.
C. Virus content will be removed from the email.
D. The administrator will be notified of the virus detection.
Answer: BC

Question No : 14

Examine the configured routes shown in the exhibit; then answer the question below.

Which interface will FortiMail use to forward an email message destined for
A. Port2
B. port4
C. port3
D. port1
Answer: B

Question No : 15

Examine the FortiMail session profile and protected domain configuration shown in the exhibit; then answer the question below.

Which size limit will FortiMail apply to outbound email?
A. 204800
B. 51200
C. 1024
D. 10240
Answer: A
