
EC-CouncilDigital Forensics Essentials
Domain 6Objective 4
Email Header Analysis and Authentication DFE Practice Questions (Page 4)
Part of the Dark Web and Email Forensics domain, which makes up ~16% of our current practice bank.
40questions here
8free pages
8concepts
Questions 16–20
- 16
What is the primary purpose of the Sender Policy Framework (SPF)?
Select an answer first - 17
You are reviewing an email that failed SPF. The Authentication-Results header shows 'spf=fail (sender is not authorized)' with smtp.mailfrom=example.com. What does this mean?
Select an answer first - 18
Which header field, when it appears with a value that does not match the domain in the From header, is a potential sign of spoofing?
Select an answer first - 19
Your organization is implementing email authentication to reduce phishing. You need to ensure that emails sent from your domain are verified and that receiving servers can enforce a policy for unauthenticated messages. Which combination of protocols should you implement?
Select an answer first - 20
Your organization wants to prevent attackers from spoofing your domain in emails sent to external recipients. You have already published SPF and DKIM records. What additional step is necessary to enforce a policy on receiving servers?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DFE” is a trademark of its owner, used for identification only.