Question 1
A financial services firm has deployed a FortiMail 2000E cluster in gateway mode. During a routine audit, it was discovered that outbound emails containing customer account numbers are not being properly encrypted using the configured Identity-Based Encryption (IBE) policy. The policy is designed to trigger encryption for any email sent to external domains. A junior administrator confirms the IBE service is running and users are registered. Which of the following is the most likely cause for the IBE policy failure for outbound mail?
Answer and explanation
Correct answer: A
FortiMail applies IBE encryption through policies. For outbound mail, an outbound recipient policy must be matched, and that policy must have a content profile that specifies the IBE encryption action. If the content profile with the IBE action is not linked to the outbound policy, encryption will not be triggered, even if the IBE service is active.