[Apr 24, 2024] New Cisco 300-720 Dumps with Test Engine and PDF (New Questions)
Pass Your 300-720 Exam Easily - Real 300-720 Practice Dump Updated
NEW QUESTION # 69
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?
- A. antivirus
- B. data loss prevention
- C. antispam
- D. quarantine threat level
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html
NEW QUESTION # 70
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?
- A. Show the SLBL cache on the CLI.
- B. Monitor Incoming/Outgoing Listener.
- C. Export the SLBL to a .csv file.
- D. Debug the mail flow policy.
Answer: C
Explanation:
The safelist/blocklist (SLBL) is a feature that allows Cisco ESA to accept or reject messages from specific email addresses or domains, based on the configuration of mail flow policies or end user preferences.
The action that provides direct access to view the SLBL on Cisco ESA is to export the SLBL to a .csv file, which can be done from the web user interface by selecting Security Services > Safelist/Blocklist and clicking Export.
The other options do not provide direct access to view the SLBL on Cisco ESA.
NEW QUESTION # 71
What is a benefit of deploying Cisco Secure Email and Web Manager?
- A. centralized management of botnet directories
- B. centralized management of software updates for Cisco Secure Email Gateway
- C. centralized management of logs for Cisco Secure Email Gateway
- D. centralized management of quarantined email
Answer: D
Explanation:
One of the benefits of deploying Cisco Secure Email and Web Manager is that it provides centralized management of quarantined email for multiple Cisco Secure Email Gateway appliances. The administrator can use the Cisco Secure Email and Web Manager to view, search, release, delete, or forward quarantined messages from a single web interface. Reference: [Cisco Secure Email and Web Manager User Guide - Configuring Centralized Spam Quarantine]
NEW QUESTION # 72
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?
- A. Spam Quarantine External Authentication Query
- B. Enabling the End-User Safelist/Blocklist feature
- C. Spam Quarantine End-User Authentication Query
- D. Spam Quarantine Alias Consolidation Query
Answer: C
NEW QUESTION # 73
Which two steps are needed to disable local spam quarantine before external quarantine is enabled?
(Choose two.)
- A. Check the External Safelist/Blocklist check box.
- B. Select External Spam Quarantine and click on Configure.
- C. Select Security Services and click Spam Quarantine.
- D. Select Monitor and click Spam Quarantine.
- E. Uncheck the Enable Spam Quarantine check box.
Answer: D,E
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118555-qa-esa-
00.html (configuration summary)
NEW QUESTION # 74
What must be configured to allow the Cisco ESA to encrypt an email using the Cisco Registered Envelope Service?
- A. provisioned email encryption profile
- B. content filter to forward the email to the Cisco Registered Envelope server
- C. message encryption from a content filter that select "Message Encryption" over TLS
- D. message encryption from the mail flow policies with "CRES" selected
Answer: C
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_010010.html
NEW QUESTION # 75
Which Cisco ESA security service is configured only through an outgoing mail policy?
- A. antivirus
- B. DLP
- C. AMP
- D. Outbreak Filters
Answer: B
NEW QUESTION # 76
Which attack is mitigated by using Bounce Verification?
- A. denial of service
- B. smurf
- C. eavesdropping
- D. spoof
Answer: A
Explanation:
Explanation/Reference: https://www.networkworld.com/article/2305394/ironport-adds-bounce-back-verification-for-e- mail.html
NEW QUESTION # 77
Which two certificate authority lists are available in Cisco ESA? (Choose two.)
- A. default
- B. custom
- C. demo
- D. system
- E. user
Answer: B,D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_11_1_chapter_011000.html#task_1194859
NEW QUESTION # 78
Which components are required when encrypting SMTP with TLS on a Cisco Secure Email Gateway appliance when the sender requires TLS verification?
- A. self-signed certificate in PKCS#12 format
- B. X. 509 certificate and matching private key from a CA
- C. self-signed certificate in PKCS#7 format
- D. DER certificate and matching public key from a CA
Answer: B
Explanation:
To encrypt SMTP with TLS on a Cisco Secure Email Gateway appliance when the sender requires TLS verification, the components that are required are an X.509 certificate and matching private key from a CA. The certificate must be signed by a trusted CA and contain the domain name or IP address of the listener in the Subject or Subject Alternative Name fields. The private key must be unencrypted and match the certificate. Reference: [Cisco Secure Email Gateway Administrator Guide - Configuring TLS]
NEW QUESTION # 79
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)
- A. Enable antispam scanning.
- B. Enable outbreak filters.
- C. Enable port bouncing.
- D. Enable antivirus scanning.
- E. Enable email relay.
Answer: A,B
Explanation:
Undesirable URL protection is a feature that allows Cisco ESA to detect and block messages that contain URLs that lead to malicious or unwanted websites, such as phishing, malware, or adult content sites. To enable this feature, outbreak filters and antispam scanning must be enabled on Cisco ESA.
NEW QUESTION # 80
How does the graymail safe unsubscribe feature function?
- A. It strips the malicious content of the URI before unsubscribing.
- B. It checks the URI reputation and category and allows the content filter to take an action on it.
- C. It redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe.
- D. It checks the reputation of the URI and performs the unsubscribe process on behalf of the end user.
Answer: D
NEW QUESTION # 81
A Cisco ESA administrator has noticed that new messages being sent to the Centralized Policy Quarantine are being released after one hour. Previously, they were being held for a day before being released.
What was configured that caused this to occur?
- A. The retention period was set to default.
- B. The retention period was changed to one hour.
- C. The threshold settings were set to override the clock settings.
- D. The threshold settings were set to default.
Answer: A
Explanation:
You can configure Policy, Virus, and Outbreak Quarantines in any one of the following ways:
Choose Quarantine > Other Quarantine > View > +.
Choose Monitor > Policy, Virus, and Outbreak Quarantines and do one of the following.
Click Add Policy Quarantine.
Keep the following in mind, changing the retention time of the File Analysis quarantine from the default of one hour is not recommended.
https://www.cisco.com/c/en/us/td/docs/security/esa/esa14-0/user_guide/b_ESA_Admin_Guide_14-0/b_ESA_Admin_Guide_12_1_chapter_011111.html?bookSearch=true
NEW QUESTION # 82
When the Cisco ESA is configured to perform antivirus scanning, what is the default timeout value?
- A. 90 seconds
- B. 30 seconds
- C. 120 seconds
- D. 60 seconds
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01011.html
NEW QUESTION # 83
An engineer is testing mail flow on a new Cisco ESA and notices that messages for domain abc.com are stuck in the delivery queue. Upon further investigation, the engineer notices that the messages pending delivery are destined for 192.168.1.11, when they should instead be routed to
192.168.1.10.
What configuration change needed to address this issue?
- A. Modify Destination Controls entry for the domain abc.com.
- B. Modify the SMTP route for the domain and change the IP address to 192.168.1.10.
- C. Add an address list for domain abc.com.
- D. Modify the Routing Tables and add a route for IP address to 192.168.1.10.
Answer: B
Explanation:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118136-qanda-esa-
00.html
NEW QUESTION # 84
An organization has a strict policy on URLs embedded in emails. The policy allows visibility into what the URL is but does not allow the user to click it. Which action must be taken to meet the requirements of the security policy?
- A. Redirect the URL to the Cisco security proxy
- B. Enable the URL quarantine policy
- C. Defang the URL.
- D. Replace the URL with text
Answer: C
Explanation:
To meet the security policy of allowing visibility into what the URL is but not allowing the user to click it, the administrator must defang the URL. This means that the URL will be modified in a way that it is still readable by humans but not clickable by browsers. For example, http://example.com could be defanged as hxxp://example[.]com. Reference: [Cisco Secure Email Gateway Administrator Guide - Defanging URLs in Messages]
NEW QUESTION # 85
Which two query types are available when an LDAP profile is configured? (Choose two.)
- A. group
- B. routing
- C. proxy consolidation
- D. user
- E. recursive
Answer: A,B
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011010.html
NEW QUESTION # 86
Which two actions are configured on the Cisco ESA to query LDAP servers? (Choose two.)
- A. reject
- B. accept
- C. route
- D. relay
- E. delay
Answer: B,C
NEW QUESTION # 87
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Answer:
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/ b_ESA_Admin_Guide_11_1_chapter_010101.html
NEW QUESTION # 88
Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.
Answer:
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/ b_ESA_Admin_Guide_chapter_010001.html (message actions)
NEW QUESTION # 89
The CEO sent an email indicating that all emails containing a string of 123ABCDEFGHJ cannot be delivered and must be sent into quarantine for further inspection. Given the requirement, which regular expression should be used to match on that criteria?
- A. \\D{3}[A-Z]{9}
- B. {3}\d{9}[A-Z]
- C. \d{3}[A-Z]{9}
- D. \W{3}[A-Z]{9}
Answer: C
Explanation:
A regular expression is a sequence of characters that defines a search pattern for text. To match a string of 123ABCDEFGHJ, you need to use the following regular expression: \d{3}[A-Z]{9}. This expression means that the string must start with three digits (\d{3}), followed by nine uppercase letters ([A-Z]{9}). This expression will match any string that has the same format as 123ABCDEFGHJ. Reference = User Guide for AsyncOS 12.0 for Cisco Email Security Appliances - GD (General Deployment) - Regular Expressions [Cisco Secure Email Gateway] - Cisco
NEW QUESTION # 90
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?
- A. DLP is not configured on host1.
- B. Content filters are configured at the machine-level on esa1.
- C. DLP is configured at the cluster-level on esa2.
- D. DLP is configured at the domain-level on esa1.
Answer: B
Explanation:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/200083-Requirements-for-the-PVO-Migration-Wizar.html
NEW QUESTION # 91
What is the default behavior of any listener for TLS communication?
- A. preferred
- B. required
- C. off
- D. preferred-verify
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118954-config-esa- 00.html
NEW QUESTION # 92
......
ValidDumps just published the Cisco 300-720 exam dumps!: https://www.validdumps.top/300-720-exam-torrent.html
For your comfort, ValidDumps provides you the convenience of free CCNP Security braindumps demo: https://drive.google.com/open?id=19GpQhekMINZU7qmPEErO4D3cXJGwXYK2