[Apr 02, 2023] 300-720 PDF Dumps is essential on your 300-720 Exam Questions Certain Success!
300-720 PDF Questions - Perfect Prospect To Go With 300-720 Practice Exam
NEW QUESTION 11
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA.
Which outgoing mail policy feature should be configured to catch this content before it leaves the network?
- A. file analysis
- B. outbreak filtering
- C. data loss prevention
- D. file reputation filtering
Answer: B
NEW QUESTION 12
Email encryption is configured on a Cisco ESA that uses CRES.
Which action is taken on a message when CRES is unavailable?
- A. It is encrypted by a Cisco encryption appliance.
- B. It is dropped and an error message is sent to the sender.
- C. It is requeued.
- D. It is sent in clear text.
Answer: D
NEW QUESTION 13
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?
- A. TXT record
- B. MX record
- C. AAAA record
- D. PTR record
Answer: A
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/213939-esa- configure-dkim-signing.html
NEW QUESTION 14
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?
- A. Show the SLBL cache on the CLI.
- B. Debug the mail flow policy.
- C. Monitor Incoming/Outgoing Listener.
- D. Export the SLBL to a .csv file.
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html
NEW QUESTION 15
An analyst creates a new content dictionary to use with Forged Email Detection.
Which entry will be added into the dictionary?
- A. [email protected]
- B. Alpha Beta
- C. ^Alpha\ Beta$
- D. mycompany.com
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/products/collateral/security/email-security-appliance/ whitepaper_C11-737596.html
NEW QUESTION 16
What is a benefit of implementing URL filtering on the Cisco ESA?
- A. blacklists spam
- B. enhances reputation against malicious URLs
- C. provides URL reputation protection
- D. removes threats from malicious URLs
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118775-technote- esa-00.html
NEW QUESTION 17
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?
- A. quarantine threat level
- B. data loss prevention
- C. antispam
- D. antivirus
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html
NEW QUESTION 18
Which antispam feature is utilized to give end users control to allow emails that are spam to be delivered to their inbox, overriding any spam verdict and action on the Cisco ESA?
- A. end user allow list
- B. end user passthrough list
- C. end user spam quarantine access
- D. end user safelist
Answer: D
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-
0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.129
NEW QUESTION 19
Which process is skipped when an email is received from safedomain.com, which is on the safelist?
- A. message filter
- B. outbreak filter
- C. antispam scanning
- D. antivirus scanning
Answer: C
Explanation:

https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.978
https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.123
NEW QUESTION 20
Which two steps configure Forged Email Detection? (Choose two.)
- A. Enable Forged Email Detection on the Security Services page.
- B. Configure a content dictionary with executive email addresses.
- C. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
- D. Configure a content dictionary with friendly names.
- E. Configure a filter to use the Forged Email Detection rule and dictionary.
Answer: B,E
NEW QUESTION 21
Which component must be added to the content filter to trigger on failed SPF Verification or DKIM Authentication verdicts?
- A. response
- B. condition
- C. status
- D. parameter
Answer: B
NEW QUESTION 22
Which Cisco ESA security service is configured only through an outgoing mail policy?
- A. AMP
- B. DLP
- C. Outbreak Filters
- D. antivirus
Answer: B
Explanation:
Explanation
Reference https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-0/user_guide_fs/ b_ESA_Admin_Guide_11_0/b_ESA_Admin_Guide_chapter_01001.html
NEW QUESTION 23
Which action is a valid fallback when a client certificate is unavailable during SMTP authentication on Cisco ESA?
- A. LDAP Query
- B. LDAP BIND
- C. SMTP TLS
- D. SMTP AUTH
Answer: D
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011011.html
NEW QUESTION 24
What are two primary components of content filters? (Choose two.)
- A. subject
- B. policies
- C. content
- D. conditions
- E. actions
Answer: D,E
Explanation:
Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/esa_user_guide_11-1/ b_ESA_Admin_Guide_ces_11_1/b_ESA_Admin_Guide_chapter_01010.pdf
NEW QUESTION 25
An email containing a URL passes through the Cisco ESA that has content filtering disabled for all mail policies. The sender is [email protected], the recipients are [email protected], [email protected], [email protected], and [email protected]. The subject of the email is Test Document395898847. An administrator wants to add a policy to ensure that the Cisco ESA evaluates the web reputation score before permitting this email.
Which two criteria must be used by the administrator to achieve this? (Choose two.)
- A. Email does not match [email protected]
- B. Email body contains a URL
- C. Sender matches test1.com
- D. Date and time of email
- E. Subject contains Test Document"
Answer: B,E
NEW QUESTION 26
Refer to the exhibit. An engineer needs to change the existing Forged Email Detection message filter so that it references a newly created dictionary named `Executives'.
What should be done to accomplish this task?
- A. Change "support" to "Executives".
- B. Change fed' to "Executives".
- C. Change "from" to "Executives".
- D. Change "TESF to "Executives".
Answer: A
NEW QUESTION 27
What are organizations trying to address when implementing a SPAM quarantine?
- A. true positives
- B. true negatives
- C. false negatives
- D. false positives
Answer: D
NEW QUESTION 28
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?
- A. Issue the altsrchost command.
- B. Map the envelope sender address to the host.
- C. Apply a filter on the message.
- D. Set up the interface group with the flag.
Answer: A
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01000.html#con_1133810
NEW QUESTION 29
......
300-720 Exam with Accurate Securing Email with Cisco Email Security Appliance PDF Questions: https://quizguide.actualcollection.com/300-720-exam-questions.html