Fortinet FCP_FML_AD-7.4 Practice Test Questions and Exam Dumps Part18 Q341-360

View Full Fortinet FCP_FML_AD-7.4 Exam Dumps and Practice Test Dumps.


Q341. What can an active passive HA deployment provide?

  1. Additional spam dictionaries
  2. Service continuity after a unit failure
  3. More mailbox aliases
  4. Automatic DNS hosting

Correct Answer: 2. Service continuity after a unit failure

Explanation

An active passive high availability deployment uses one FortiMail unit to provide the active service while another unit remains ready to take over if the active member becomes unavailable. This design improves email service availability by reducing the impact of hardware or system failures. Heartbeat communication allows cluster members to monitor one another and determine when failover is required. Administrators should verify synchronization and network connectivity so the secondary unit is prepared for takeover. High availability does not create additional spam dictionaries or mailbox aliases. Its main purpose is maintaining FortiMail service when the active appliance fails.

Q342. What can HA configuration synchronization maintain?

  1. User message subjects
  2. Public DNS records
  3. Antivirus samples
  4. Consistent settings between cluster members

Correct Answer: 4. Consistent settings between cluster members

Explanation

Configuration synchronization helps high availability members maintain compatible FortiMail settings. When administrators make supported changes on the active member, synchronization allows the other cluster member to receive the required configuration so it can assume service if failover occurs. Without proper synchronization, the secondary appliance could behave differently after takeover. Administrators should monitor synchronization status and investigate errors before they become availability problems. Configuration synchronization does not copy public DNS records or malware samples. Its purpose is keeping important FortiMail configuration consistent between appliances participating in the high availability cluster.

Q343. What can HA priority influence?

  1. Which unit becomes preferred primary
  2. Attachment scanning order
  3. Mailbox quota
  4. Archive retention

Correct Answer: 1. Which unit becomes preferred primary

Explanation

High availability priority can influence which FortiMail appliance is preferred to operate in the primary role when multiple eligible members are available. Priority settings help administrators define intended cluster behavior rather than leaving role selection entirely to default conditions. The exact election behavior also depends on the high availability configuration and member status. Priority does not determine attachment scanning or archive retention. Its purpose is contributing to the decision about which FortiMail appliance should assume or retain the preferred active role within the high availability deployment.

Q344. What can a HA failover event trigger?

  1. New spam dictionary creation
  2. DKIM key rotation
  3. Secondary unit takeover
  4. Mailbox deletion

Correct Answer: 3. Secondary unit takeover

Explanation

A failover event occurs when the active FortiMail appliance can no longer provide the expected service and another eligible cluster member takes over. The event may be triggered by appliance failure, service failure, or another monitored condition depending on the high availability configuration. Successful failover depends on correct heartbeat communication, configuration synchronization, and network design. Administrators should test high availability behavior before relying on it in production. Failover does not automatically rotate DKIM keys or delete mailboxes. Its purpose is transferring service responsibility to another FortiMail member when the active unit becomes unavailable.

Q345. What can queue monitoring help identify?

  1. Administrator password complexity
  2. Certificate authority ownership
  3. DNS zone permissions
  4. Messages waiting for delivery

Correct Answer: 4. Messages waiting for delivery

Explanation

Queue monitoring allows administrators to review messages that FortiMail has accepted but has not yet delivered successfully. Messages can remain queued because of temporary network failures, unavailable destination servers, DNS problems, or temporary SMTP responses. Reviewing queue information helps administrators determine whether a delay affects one destination or a larger portion of the mail environment. Queue monitoring also supports actions such as retrying or removing messages when appropriate. It does not inspect administrator password complexity or certificate authority ownership. Its purpose is providing visibility into email that is still awaiting successful delivery.

Q346. What can queue age indicate?

  1. DKIM selector age
  2. How long a message has waited
  3. Administrator account age
  4. Mailbox creation date

Correct Answer: 2. How long a message has waited

Explanation

Queue age indicates how long a message has remained in a FortiMail delivery queue without successful completion. A large number of old queued messages can indicate a destination outage, routing error, DNS problem, or repeated temporary SMTP rejection. Administrators can compare queue age with retry settings and message logs to identify the cause of prolonged delays. Older messages may eventually expire according to configured delivery rules. Queue age does not describe administrator accounts or mailbox creation. Its purpose is helping administrators understand how long undelivered email has been waiting for another delivery attempt.

Q347. What can a retry interval control?

  1. Time between delivery attempts
  2. Antivirus signature size
  3. Mailbox folder order
  4. Administrator permission level

Correct Answer: 1. Time between delivery attempts

Explanation

A retry interval determines how long FortiMail waits between attempts to deliver a message after receiving a temporary delivery failure. Appropriate retry timing prevents constant repeated connections to an unavailable destination while still allowing delayed messages to be delivered when the remote system recovers. Administrators should coordinate retry behavior with queue lifetime and operational requirements. Very frequent retries can waste resources, while excessively long intervals can increase delivery delay. The retry interval does not control administrator permissions or antivirus data. Its purpose is managing the timing of repeated SMTP delivery attempts for queued mail.

Q348. What can queue expiration cause?

  1. Automatic DKIM signing
  2. Creation of a mailbox alias
  3. Final failure after repeated delivery attempts
  4. Increase of archive storage

Correct Answer: 3. Final failure after repeated delivery attempts

Explanation

Queue expiration occurs when a message has remained undelivered beyond the maximum time FortiMail is configured to retain it for retry. Temporary delivery failures normally cause repeated attempts, but FortiMail cannot keep retrying indefinitely. Once the queue lifetime is exceeded, the message can be treated as permanently undeliverable and appropriate failure handling can occur. Administrators should investigate messages that frequently reach expiration because this can indicate routing or destination problems. Queue expiration does not increase archive storage or create aliases. Its purpose is ending delivery attempts after the allowed retry period has been exhausted.

Q349. What can a quarantine digest provide to users?

  1. Summary of held messages
  2. Administrator login history
  3. DNS server statistics
  4. DKIM private keys

Correct Answer: 1. Summary of held messages

Explanation

A quarantine digest provides users with a summary of messages that FortiMail has placed into their quarantine. The digest can help recipients review held email without manually signing in to quarantine every time. Depending on configuration and permissions, users may be able to take actions such as releasing or managing listed messages. Digests should be scheduled at a useful frequency so users receive timely information without excessive notifications. They do not expose DKIM keys or administrator history. Their purpose is making quarantine management easier by informing users about messages currently being held for review.

Q350. What can personal quarantine release do?

  1. Delete a protected domain
  2. Reset an administrator password
  3. Disable antivirus scanning
  4. Deliver an approved held message

Correct Answer: 4. Deliver an approved held message

Explanation

Personal quarantine release allows an authorized user to approve a held message so FortiMail can deliver it instead of continuing to keep it in quarantine. This is useful when legitimate email was classified incorrectly or was held because of a policy that allows user review. Release permissions should be configured carefully because some security categories may require administrator control rather than user action. Releasing a message does not disable antivirus globally or remove protected domains. Its purpose is allowing permitted users to recover legitimate messages that FortiMail previously placed in personal quarantine.

Q351. What can quarantine expiration control?

  1. Number of network interfaces
  2. How long held messages remain available
  3. DKIM key strength
  4. SMTP route preference

Correct Answer: 2. How long held messages remain available

Explanation

Quarantine expiration determines how long FortiMail retains held messages before they are removed according to the configured retention policy. Retention should provide enough time for administrators or users to review legitimate messages while preventing quarantine storage from growing without limit. Different organizational or compliance requirements may influence how long quarantined email must remain available. Administrators should monitor quarantine storage and adjust retention settings when necessary. Quarantine expiration does not determine mail route preference or DKIM strength. Its purpose is controlling the period during which quarantined messages remain available for review and possible release.

Q352. What can a quarantine search filter locate?

  1. Network routes
  2. Administrator themes
  3. Selected held messages
  4. Antivirus engine files

Correct Answer: 3. Selected held messages

Explanation

A quarantine search filter helps administrators or permitted users find specific held messages using available criteria such as sender, recipient, subject, time, or quarantine type. Filtering is useful when quarantine contains many messages and reviewing every entry manually would be inefficient. Search results can then be examined to determine whether messages should remain held, be released, or be deleted. Quarantine search does not identify network routes or antivirus engine files. Its purpose is narrowing the quarantine view so users can quickly locate messages relevant to a particular investigation or delivery problem.

Q353. What can an archive policy determine?

  1. Administrator password length
  2. Interface duplex settings
  3. SMTP greeting text
  4. Which messages are retained for archiving

Correct Answer: 4. Which messages are retained for archiving

Explanation

An archive policy determines which email should be copied or retained for archival purposes according to configured conditions. Organizations may archive selected inbound, outbound, or internal messages to meet legal, business, or auditing requirements. Archiving should be planned carefully because retained email can consume substantial storage and may contain sensitive information. Access to archives should therefore be limited to authorized users. Archive policies do not control network interface settings or administrator password length. Their purpose is defining which email traffic FortiMail should preserve as an archived copy for later search and review.

Q354. What can an archive account define?

  1. Destination for archived messages
  2. Sender reputation threshold
  3. Antivirus signature schedule
  4. DNS query timeout

Correct Answer: 1. Destination for archived messages

Explanation

An archive account defines where FortiMail sends or stores message copies selected for archiving. Administrators configure archive destinations according to organizational retention and storage requirements. Archive accounts work with archive policies so FortiMail knows both which messages should be retained and where those copies should go. Proper storage capacity and access controls are important because archived email can accumulate quickly and may contain confidential information. Archive accounts do not determine sender reputation or antivirus schedules. Their purpose is providing the configured destination used to retain copies of messages selected by FortiMail archive policies.

Q355. What can archive indexing improve?

  1. SMTP connection speed
  2. Mailbox quota size
  3. Search efficiency for retained messages
  4. Administrator authentication strength

Correct Answer: 3. Search efficiency for retained messages

Explanation

Archive indexing helps FortiMail organize information about retained email so administrators can search archived messages more efficiently. Indexes can reduce the amount of data that must be examined when searching by message information such as sender, recipient, subject, or other supported fields. This becomes increasingly important as the archive grows over time. Administrators should monitor archive and index storage so search performance remains acceptable. Indexing does not increase mailbox quotas or strengthen administrator authentication. Its purpose is improving the speed and practicality of locating specific email within a large collection of archived messages.

Q356. What can an archive retention period control?

  1. SMTP authentication method
  2. Duration archived mail is preserved
  3. Antivirus action
  4. HA heartbeat frequency

Correct Answer: 2. Duration archived mail is preserved

Explanation

An archive retention period defines how long retained email should remain available before it becomes eligible for removal according to organizational policy. The correct duration may be influenced by legal requirements, business needs, storage capacity, or internal governance. Administrators should ensure that retention settings satisfy required policies while avoiding unnecessary storage consumption. Archive retention is different from quarantine retention because archives are normally intended for longer term preservation rather than temporary message review. The setting does not control high availability heartbeat or SMTP authentication. Its purpose is determining how long archived email remains stored.

Q357. What can a report profile define?

  1. Information included in generated reports
  2. Mailbox passwords
  3. Network interface addresses
  4. DKIM private keys

Correct Answer: 1. Information included in generated reports

Explanation

A report profile defines the content and presentation of reports generated from FortiMail activity. Administrators can use reports to review email traffic, security detections, system behavior, and other available statistics. Profiles allow different reports to focus on different operational or security requirements. Reports can support management review, troubleshooting, trend analysis, and compliance activities. They should be configured with suitable data ranges and recipients when scheduled delivery is used. Report profiles do not contain mailbox passwords or DKIM private keys. Their purpose is defining what information FortiMail includes when producing structured administrative reports.

Q358. What can a scheduled report automate?

  1. DNS record creation
  2. Antivirus engine replacement
  3. Regular generation and delivery of reports
  4. Mailbox deletion

Correct Answer: 3. Regular generation and delivery of reports

Explanation

A scheduled report allows FortiMail to generate selected reports automatically at configured intervals. Reports can then be delivered to appropriate recipients or made available according to the configured reporting workflow. Scheduling reduces the need for administrators to manually create routine summaries and helps ensure that operational and security information is reviewed consistently. The schedule should reflect how quickly the reported information becomes useful. Scheduled reports do not create DNS records or remove user mailboxes. Their purpose is automating regular reporting so administrators receive recurring visibility into FortiMail activity without performing the same task manually.

Q359. What can a report time range determine?

  1. Administrator password lifetime
  2. Quarantine folder ownership
  3. DKIM key selection
  4. Period of data included in the report

Correct Answer: 4. Period of data included in the report

Explanation

A report time range determines the period from which FortiMail collects information for a generated report. A daily report may summarize recent activity, while a weekly or monthly report can reveal broader trends. Selecting the correct range is important because comparisons are only meaningful when administrators understand the period represented by the data. Longer ranges can provide trend information but may reduce the visibility of short term spikes. Report time ranges do not determine DKIM keys or administrator password lifetime. Their purpose is defining which period of FortiMail activity is represented in the report.

Q360. What can a report recipient setting define?

  1. SMTP connection limit
  2. Who receives the generated report
  3. Archive retention period
  4. Antivirus scan depth

Correct Answer: 2. Who receives the generated report

Explanation

A report recipient setting identifies the users or addresses that should receive a generated FortiMail report. Different operational, security, or management teams may require different report types, so recipients should be selected according to responsibility and need. Reports can contain sensitive information about mail traffic or security events, making access control important. Administrators should avoid sending reports unnecessarily to broad distribution lists. The recipient setting does not control antivirus scanning or archive retention. Its purpose is directing completed FortiMail reports to the appropriate people who need the information for monitoring, analysis, or administrative review.