nerdexam
Fortinet

FCP_FML_AD-7.4 · Question #18

Refer to the exhibits, which show a topology diagram (Topology) and a configuration element (IP Policy): An administrator has enabled the sender reputation feature in the Example_Session profile on…

The correct answer is A. Disable the exclusive flag in IP policy ID 1. D. Create an outbound recipient policy to bypass outbound email from session profile inspections. Disable the exclusive flag in IP policy ID 1. The "Take precedence over recipient based policy match" (exclusive) toggle is currently forcing all SMTP flows through the single IP policy, so your outbound mail never hits any recipient-based bypass rules. Turning off that flag…

Antispam

Question

Refer to the exhibits, which show a topology diagram (Topology) and a configuration element (IP Policy):

An administrator has enabled the sender reputation feature in the Example_Session profile on FML-1. After a few hours, the deferred queue on the mail server starts filling up with undeliverable email. Which two changes must the administrator make to fix this issue? (Choose two.)

Exhibits

FCP_FML_AD-7.4 question #18 exhibit 1
FCP_FML_AD-7.4 question #18 exhibit 2

Options

  • ADisable the exclusive flag in IP policy ID 1.
  • BClear the sender reputation database using the CLI.
  • CApply a session profile with sender reputation disabled on a separate IP policy for outbound
  • DCreate an outbound recipient policy to bypass outbound email from session profile inspections.

How the community answered

(39 responses)
  • A
    64% (25)
  • B
    10% (4)
  • C
    26% (10)

Explanation

Disable the exclusive flag in IP policy ID 1. The "Take precedence over recipient based policy match" (exclusive) toggle is currently forcing all SMTP flows through the single IP policy, so your outbound mail never hits any recipient-based bypass rules. Turning off that flag lets recipient policies take effect for matching messages. Create an outbound recipient policy to bypass outbound email from session-profile inspections. Once the exclusive flag is cleared, you can define a recipient policy (matching your internal sender domain or internal-to-external traffic) that bypasses sender-reputation checks on outbound mail, preventing legitimate internal mail from being deferred.

Topics

#sender reputation#IP policy exclusive flag#outbound email#deferred queue

Community Discussion

No community discussion yet for this question.

Full FCP_FML_AD-7.4 Practice