Best Quality 300-720 Exam Questions Cisco Test To Gain Brilliante Result!
Preparations of 300-720 Exam 2021 CCNP Security Unlimited 92 Questions
NEW QUESTION 22
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)
- A. Enable antispam scanning.
- B. Enable email relay.
- C. Enable antivirus scanning.
- D. Enable port bouncing.
- E. Enable outbreak filters.
Answer: A,E
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01111.html
NEW QUESTION 23
An administrator identifies that, over the past week, the Cisco ESA is receiving many emails from certain senders and domains which are being consistently quarantined. The administrator wants to ensure that these senders and domain are unable to send anymore emails.
Which feature on Cisco ESA should be used to achieve this?
- A. incoming mail policies
- B. safelist
- C. blocklist
- D. S/MIME Sending Profile
Answer: A
NEW QUESTION 24
Which two action types are performed by Cisco ESA message filters? (Choose two.)
- A. quarantine actions
- B. discard actions
- C. non-final actions
- D. filter actions
- E. final actions
Answer: C,E
NEW QUESTION 25
DRAG DROP
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Select and Place:
Answer:
Explanation:
Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/ b_ESA_Admin_Guide_11_1_chapter_010101.html
NEW QUESTION 26
Which setting affects the aggressiveness of spam detection?
- A. spam threshold
- B. spam timeout
- C. maximum depth of recursion scan
- D. protection level
Answer: A
NEW QUESTION 27
Which SMTP extension does Cisco ESA support for email security?
- A. ETRN
- B. STARTTLS
- C. UTF8SMTP
- D. PIPELINING
Answer: B
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011000.html
NEW QUESTION 28
Which two steps configure Forged Email Detection? (Choose two.)
- A. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
- B. Configure a content dictionary with executive email addresses.
- C. Configure a content dictionary with friendly names.
- D. Configure a filter to use the Forged Email Detection rule and dictionary.
- E. Enable Forged Email Detection on the Security Services page.
Answer: B,D
Explanation:
Reference:
https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11
NEW QUESTION 29
Which type of attack is prevented by configuring file reputation filtering and file analysis features?
- A. backscatter
- B. zero-day
- C. phishing
- D. denial of service
Answer: B
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_010000.html#con_1809885
NEW QUESTION 30
Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.
Answer:
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/ b_ESA_Admin_Guide_chapter_010001.html (message actions)
NEW QUESTION 31
Which action must be taken before a custom quarantine that is being used can be deleted?
- A. Delete only the unused quarantine.
- B. Remove the quarantine from the message action of a filter.
- C. Delete the quarantine that is not assigned to a filter.
- D. Delete the quarantine that is assigned to a filter.
Answer: B
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011111.html
NEW QUESTION 32
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Answer:
Explanation:

NEW QUESTION 33
When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)
- A. DKIM
- B. Private Keys
- C. Symmetric Keys
- D. Public Keys
- E. Domain Keys
Answer: A,E
NEW QUESTION 34
Email encryption is configured on a Cisco ESA that uses CRES.
Which action is taken on a message when CRES is unavailable?
- A. It is requeued.
- B. It is dropped and an error message is sent to the sender.
- C. It is encrypted by a Cisco encryption appliance.
- D. It is sent in clear text.
Answer: D
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117863- configure-esa-00.html
NEW QUESTION 35
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
- A. senderbase reputation filtering
- B. NetFlow
- C. content disarm and reconstruction
- D. geolocation-based filtering
- E. heuristic-based filtering
Answer: A,E
NEW QUESTION 36
Which two are configured in the DMARC verification profile? (Choose two.)
- A. name of the verification profile
- B. message action to take when the policy is reject/quarantine
- C. minimum number of signatures to verify
- D. message action into an incoming or outgoing content filter
- E. ESA listeners to use the verification profile
Answer: A,B
NEW QUESTION 37
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?
- A. data loss prevention
- B. antivirus
- C. quarantine threat level
- D. antispam
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html
NEW QUESTION 38
Which benefit does enabling external spam quarantine on Cisco SMA provide?
- A. ability to scan messages by using two engines to increase a catch rate
- B. access to the spam quarantine interface on which a user can release, duplicate, or delete
- C. ability to back up spam quarantine from multiple Cisco ESAs to one central console
- D. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console
Answer: D
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/security_management/sma/sma11-0/ user_guide/b_SMA_Admin_Guide/b_SMA_Admin_Guide_chapter_010101.html
NEW QUESTION 39
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?
- A. DLP is configured at the cluster-level on esa2.
- B. DLP is configured at the domain-level on esa1.
- C. Content filters are configured at the machine-level on esa1.
- D. DLP is not configured on host1.
Answer: D
NEW QUESTION 40
Which benefit does enabling external spam quarantine on Cisco SMA provide?
- A. ability to scan messages by using two engines to increase a catch rate
- B. access to the spam quarantine interface on which a user can release, duplicate, or delete
- C. ability to back up spam quarantine from multiple Cisco ESAs to one central console
- D. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console
Answer: D
NEW QUESTION 41
Which two features are applied to either incoming or outgoing mail policies? (Choose two.)
- A. sender reputation filtering
- B. antivirus
- C. outbreak filters
- D. application filtering
- E. Indication of Compromise
Answer: B,C
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01001.html
NEW QUESTION 42
What is a benefit of implementing URL filtering on the Cisco ESA?
- A. blacklists spam
- B. removes threats from malicious URLs
- C. enhances reputation against malicious URLs
- D. provides URL reputation protection
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118775-technote- esa-00.html
NEW QUESTION 43
What is a valid content filter action?
- A. decrypt on delivery
- B. skip antispam
- C. quarantine
- D. archive
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01010.html#con_1158022
NEW QUESTION 44
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?
- A. data loss prevention
- B. antivirus
- C. quarantine threat level
- D. antispam
Answer: D
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html
NEW QUESTION 45
What must be configured to allow the Cisco ESA to encrypt an email using the Cisco Registered Envelope Service?
- A. message encryption from the mail flow policies with "CRES" selected
- B. message encryption from a content filter that select "Message Encryption" over TLS
- C. provisioned email encryption profile
- D. content filter to forward the email to the Cisco Registered Envelope server
Answer: B
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_010010.html
NEW QUESTION 46
......
Focus on 300-720 All-in-One Exam Guide For Quick Preparation: https://www.validdumps.top/300-720-exam-torrent.html
300-720 All-in-One Exam Guide For Quick Preparation: https://drive.google.com/open?id=19GpQhekMINZU7qmPEErO4D3cXJGwXYK2