Courseiva
Troubleshooting and DiagnosticsmediumMultiple SelectObjective-mapped

NSE7 Troubleshooting and Diagnostics Practice Question

An administrator is configuring a FortiGate to inspect SMTP traffic for spam and viruses. The traffic must be decrypted to inspect the content. Which THREE elements are required for this configuration? (Choose three.)

⚠ Common exam trap

Candidates often assume a web filter profile can inspect email traffic because it handles content filtering, but web filters are strictly for HTTP/HTTPS protocols and cannot process SMTP MIME data.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

A spam filter profile applied to the firewall policy

A spam filter profile is required to inspect SMTP traffic for spam. FortiGate uses this profile to apply anti-spam techniques such as DNSBL, SURBL, and heuristic analysis on the email content after decryption. Without it, spam detection cannot occur.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • A spam filter profile applied to the firewall policy

    Why this is correct

    Spam filtering is needed to identify and block spam.

  • A web filter profile applied to the firewall policy

    Why it's wrong here

    Web filter is for HTTP/HTTPS traffic, not SMTP.

  • An antivirus profile applied to the firewall policy

    Why this is correct

    Antivirus scanning is required to detect viruses in email attachments.

  • An application control profile applied to the firewall policy

    Why it's wrong here

    Application control is for identifying applications, not specifically for SMTP content inspection.

  • A firewall policy that allows SMTP traffic and has SSL inspection enabled

    Why this is correct

    SSL inspection is needed to decrypt SMTP over TLS.

Visual reference

Source Router + ACL permit 10.0.0.0/8 deny any Server 10.0.0.5 ✓ 192.168.1.1 ✗ dropped ACLs evaluate top-down; first match wins — implicit deny all at end

About these practice questions

This NSE7 question is part of Courseiva's 940-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This NSE7 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE7 exam.