Fortinet FCP_FML_AD-7.4 Practice Test Questions and Exam Dumps Part19 Q361-380

View Full Fortinet FCP_FML_AD-7.4 Exam Dumps and Practice Test Dumps.


Q361. What does DANE help FortiMail verify?

  1. Mailbox quota
  2. Archive retention
  3. TLS identity through DNS information
  4. Administrator password age

Correct Answer: 3. TLS identity through DNS information

Explanation

DANE allows FortiMail to use DNS based authentication information when establishing secure email transport. It can help verify the certificate or encryption information associated with the destination mail service by using protected DNS records. FortiMail TLS profiles can configure DANE support as none, opportunistic, or mandatory when the required TLS settings permit it. DANE adds another method of validating secure SMTP transport instead of depending only on traditional certificate authority trust. It does not control mailbox quotas or administrator passwords. Its purpose is strengthening authentication of encrypted mail transport through DNS published security information.

Q362. What does SMTPUTF8 support?

  1. International email addresses
  2. Antivirus updates
  3. Archive rotation
  4. Administrator profiles

Correct Answer: 1. International email addresses

Explanation

SMTPUTF8 extends SMTP so FortiMail can support internationalized email addresses containing characters outside the traditional ASCII character set. When enabled, FortiMail can also perform DNS queries involving supported international domain names. This feature is important for organizations that exchange email using addresses containing language specific characters. Both FortiMail and communicating mail systems must support the required standards for successful delivery. SMTPUTF8 does not update antivirus databases or manage archive rotation. Its purpose is expanding SMTP compatibility so email addresses and related domain information can contain supported international characters.

Q363. What can MTA STS checking improve?

  1. Quarantine storage
  2. Mailbox authentication
  3. Spam scoring
  4. Security of outbound SMTP transport

Correct Answer: 4. Security of outbound SMTP transport

Explanation

MTA STS allows receiving domains to publish policies describing how sending mail systems should use TLS when delivering email to them. FortiMail can check these policies for outgoing email according to system configuration. Administrators can configure checking for external domains or for all applicable domains. A TLS profile can then use MTA STS information when determining secure delivery requirements. This helps reduce the risk that encrypted SMTP communication is downgraded or redirected improperly. MTA STS does not manage quarantine capacity or spam scoring. Its purpose is improving the security requirements applied to outbound SMTP transport.

Q364. What does the MSA service provide?

  1. Archive searching
  2. Separate SMTP message submission
  3. DKIM key storage
  4. Malware quarantine

Correct Answer: 2. Separate SMTP message submission

Explanation

The SMTP message submission service allows email clients to submit outgoing messages through a separate service rather than using the same SMTP handling intended primarily for mail transfer agents. FortiMail can enable this service on a dedicated TCP port. The commonly configured submission port is 587. Separating client submission from normal mail relay can make authentication and access policies easier to manage. MSA does not perform archive searching or store DKIM keys. Its purpose is providing an appropriate SMTP service through which authenticated email clients can submit messages for delivery.

Q365. What can delivery tracking record?

  1. Mail queue delivery status
  2. Administrator passwords
  3. DNS ownership
  4. DKIM private keys

Correct Answer: 1. Mail queue delivery status

Explanation

Delivery tracking records changes in the delivery state of messages handled by the FortiMail queue. Recorded states can include queued, delivering, delivered, blocked, or failed. Administrators can use this information in history logs to determine what happened to a message after FortiMail accepted it. This is particularly useful when investigating delayed or failed mail because it provides visibility beyond the initial message processing stage. Delivery tracking does not expose administrator passwords or cryptographic keys. Its purpose is maintaining a useful history of message delivery progress so administrators can troubleshoot mail flow more effectively.

Q366. What does TLS tracking make available?

  1. Additional quarantine folders
  2. Sender aliases
  3. TLS usage statistics
  4. Administrator certificates

Correct Answer: 3. TLS usage statistics

Explanation

TLS tracking allows FortiMail to collect statistics about whether messages were received or delivered through encrypted or unencrypted SMTP connections. When enabled, administrators can review TLS statistics in FortiView. The information can show which domains communicated through secure connections and which TLS versions were used. This is useful for identifying domains that still rely on clear text transport or older security protocols. TLS tracking does not create certificates or sender aliases. Its purpose is providing visibility into actual use of encrypted SMTP transport so administrators can evaluate and improve email transport security.

Q367. What does an EHLO limit help prevent?

  1. Excessive SMTP probing
  2. Archive deletion
  3. DKIM signing
  4. Mailbox expansion

Correct Answer: 1. Excessive SMTP probing

Explanation

A session profile can restrict how many EHLO or HELO commands a client is permitted to issue during one SMTP session. Excessive greetings can be associated with automated probing or attempts to test how the mail server responds to repeated SMTP initialization. FortiMail can terminate a connection after the configured limit is exceeded. This forces abusive clients to establish new sessions and makes repeated probing less efficient. The setting does not control mailbox capacity or DKIM signing. Its purpose is protecting SMTP sessions from clients that repeatedly issue greeting commands beyond normal expected behavior.

Q368. What can an email per session limit reduce?

  1. DNS lookups
  2. Certificate validation
  3. Archive indexing
  4. Mass mailing activity

Correct Answer: 4. Mass mailing activity

Explanation

FortiMail session profiles can restrict how many email messages a client is permitted to send during one SMTP session. This helps reduce mass mailing activity and prevents a single connection from being used to submit an excessive volume of messages. When the configured limit is reached, FortiMail can terminate or restrict further activity according to session processing. Administrators should select values that accommodate legitimate mail systems while discouraging abusive automation. The setting does not control archive indexing or certificate validation. Its purpose is limiting message volume within individual SMTP sessions and reducing automated bulk mail abuse.

Q369. What can minimum encryption strength require?

  1. Longer quarantine retention
  2. A minimum TLS key strength
  3. More archive accounts
  4. Additional recipient aliases

Correct Answer: 2. A minimum TLS key strength

Explanation

A FortiMail TLS profile can require a minimum encryption strength when secure transport is configured. This ensures that an encrypted SMTP connection does not use cryptographic parameters that are weaker than the organization’s security requirement. If the remote system cannot establish a connection that meets the configured strength, FortiMail can apply the selected failure behavior. Administrators should balance security with compatibility because some older mail systems may not support stronger cryptography. The setting does not affect archive accounts or recipient aliases. Its purpose is enforcing an acceptable cryptographic strength for protected TLS communication.

Q370. What can a TLS failure action determine?

  1. Response when secure transport fails
  2. Mailbox creation
  3. Antivirus update time
  4. Archive password

Correct Answer: 1. Response when secure transport fails

Explanation

A TLS profile can define how FortiMail responds when the required secure connection cannot be established. Depending on configuration, FortiMail can fail the delivery permanently or return a temporary failure so another attempt can occur later. This is particularly important when secure TLS transport is mandatory because silently falling back to clear text could violate security requirements. Administrators should choose the failure behavior according to business and partner communication needs. The TLS failure action does not create mailboxes or determine antivirus update times. Its purpose is controlling delivery behavior when required encryption cannot be successfully established.

Q371. What can full archive indexing index?

  1. Only recipient addresses
  2. Only message subjects
  3. Entire archived messages
  4. Only administrator actions

Correct Answer: 3. Entire archived messages

Explanation

FortiMail archive accounts can use different indexing levels. Full indexing processes the entire archived message rather than indexing only headers or leaving the archive unindexed. This improves the ability to perform detailed content searches across archived email. The tradeoff is that full indexing requires additional storage and processing compared with header only indexing. Administrators should select an index type according to archive search requirements and available resources. Full indexing is not limited to recipient addresses or message subjects. Its purpose is making the complete archived message searchable for faster and more detailed archive investigations.

Q372. What can remote archive IMAP access provide?

  1. SMTP rate control
  2. Access to archived email
  3. DKIM verification
  4. Antivirus scanning

Correct Answer: 2. Access to archived email

Explanation

FortiMail can permit archive accounts to be accessed remotely through IMAP when that capability is enabled. The archive account name can be used as the login identity together with the configured archive password. This allows authorized users or applications to access stored archived messages without relying solely on the FortiMail graphical interface. Access should be protected carefully because archives can contain sensitive historical email. IMAP archive access does not perform DKIM verification or antivirus scanning. Its purpose is providing an additional supported method for authorized retrieval and management of archived email.

Q373. What can an archive Forward to setting do?

  1. Send a copy to another email address
  2. Disable SMTP
  3. Increase spam scoring
  4. Delete archived mail

Correct Answer: 1. Send a copy to another email address

Explanation

An archive account can be configured with a Forward to address. When FortiMail archives a qualifying email, it can also forward a copy to the specified email address. This can support external retention workflows, compliance monitoring, or integration with another archival platform. Administrators should ensure the destination is secure because archived messages may contain confidential information. The forwarding function does not delete the archive copy or increase spam scoring. Its purpose is allowing FortiMail to send an additional copy of archived messages to another configured email destination when organizational requirements call for it.

Q374. When can personal quarantine fall back to system quarantine?

  1. For incoming email
  2. During DNS lookup
  3. For outgoing email
  4. During administrator login

Correct Answer: 3. For outgoing email

Explanation

Personal quarantine is designed primarily for incoming email associated with individual recipients. When an antispam action attempts to use personal quarantine for outgoing email, FortiMail instead falls back to the system quarantine. This is necessary because the normal personal quarantine workflow is not appropriate for outbound messages in the same way it is for incoming recipient mail. Administrators should understand this fallback when designing outbound spam actions so messages are held in the expected location. The behavior is unrelated to DNS or administrator login. Its purpose is ensuring outgoing quarantined messages are stored in an appropriate centralized location.

Q375. What can system quarantine notification provide?

  1. Automatic DNS configuration
  2. More disk interfaces
  3. New mail routes
  4. A release link for quarantined mail

Correct Answer: 4. A release link for quarantined mail

Explanation

When FortiMail sends a message to system quarantine, administrators can enable a notification profile that informs selected people about the quarantined email. The notification can contain a link that allows an authorized recipient to release the held message. This provides a convenient review workflow without requiring every recipient to navigate manually through quarantine management. Notifications should be configured carefully so only appropriate people receive release capability. They do not configure DNS or create routes. Their purpose is informing authorized users that a message has been quarantined and providing a controlled method for releasing it when appropriate.

Q376. What can repackage infected email with customized content do?

  1. Delete the sender account
  2. Forward infected email as an attachment
  3. Disable TLS
  4. Create an archive account

Correct Answer: 2. Forward infected email as an attachment

Explanation

An antivirus action profile can repackage an infected email so the original message is forwarded as an attachment inside a new message with customized explanatory content. Administrators can use an email template to explain that the attached message was identified as infected or otherwise modified by antivirus processing. This approach preserves the original email for controlled review while giving recipients a clear warning. It should only be used where organizational policy permits access to infected content. Repackaging does not disable TLS or create archives. Its purpose is delivering the original infected message inside a controlled warning message.

Q377. What happens to some reject actions during FortiSandbox holding?

  1. They can fall back to system quarantine
  2. They disable FortiGuard
  3. They become archive actions
  4. They create recipient aliases

Correct Answer: 1. They can fall back to system quarantine

Explanation

FortiMail antivirus and antispam action behavior can change when messages are being held for FortiSandbox analysis or certain FortiGuard outbreak protection functions. In these situations, a configured reject action can fall back to system quarantine because FortiMail has already accepted or retained the message for further analysis. Administrators should understand this behavior when troubleshooting why a message was quarantined instead of rejected immediately. The fallback does not create aliases or disable FortiGuard. Its purpose is ensuring that messages requiring delayed security analysis remain under controlled FortiMail storage while the final security determination is completed.

Q378. What can archive account status control?

  1. SMTPUTF8 support
  2. Sender reputation
  3. Whether the archive account is usable
  4. TLS key strength

Correct Answer: 3. Whether the archive account is usable

Explanation

An archive account must be enabled before FortiMail can use it as a destination for email archiving. If the account is disabled, it cannot be selected or used normally in the places where archive destinations are required. This provides administrators with a way to temporarily stop use of an archive account without necessarily deleting its configuration. Archive status does not affect TLS strength or sender reputation. Its purpose is controlling whether a configured archive account is active and available for policies and other archive related functions that need to store retained email.

Q379. What does header only archive indexing process?

  1. Entire attachment content
  2. Message headers
  3. Administrator logs
  4. Antivirus databases

Correct Answer: 2. Message headers

Explanation

Header indexing creates searchable archive information from message headers without indexing the complete contents of each archived email. This can provide faster searching for common fields while consuming fewer resources than full message indexing. Administrators can choose between no indexing, header indexing, and full indexing according to search needs and available storage. Header indexing is useful when searches mainly depend on sender, recipient, subject, and similar message metadata. It does not index antivirus databases or administrator logs. Its purpose is providing a balanced archive search option that indexes important email header information without processing the entire message.

Q380. What can SMTP MSA authentication protect?

  1. Archive indexing
  2. DNS caching
  3. Quarantine retention
  4. Client message submission

Correct Answer: 4. Client message submission

Explanation

FortiMail can enable authentication for SMTP services including message submission. Authentication helps ensure that only approved users or systems can submit messages through the service. This is especially important for MSA because it is intended for email clients rather than unrestricted mail transfer between servers. Administrators can combine authentication with TLS so credentials and submitted messages receive stronger protection while travelling across the network. MSA authentication does not control archive indexing or quarantine retention. Its purpose is verifying the identity of clients that use FortiMail’s dedicated SMTP submission service to send email.