Updated May 26, 2022 Certification Exam 300-720 Dumps - Practice Test Questions [Q10-Q34]

Share

Updated May 26, 2022  Certification Exam 300-720 Dumps - Practice Test Questions

Updated Verified 300-720 dumps Q&As - Pass Guarantee or Full Refund


Are You Interested in Preparing for Securing Email with Cisco Email Security Appliance (300-720 SESA) Exam

Best guide For Cisco 300-720 Exam

A Brief overview of CCNP Certification

The CCNP Security certification is developed to assess the ability of a security professional to protect an organization's physical facilities, cloud solutions, endpoints, and network access. The CCNP Basic Safety and Security exam verifies the potential client's understanding of safety sections; Identify typical security vulnerabilities related to local and cloud atmospheres, Get proper access to inspection plans, Also configure verification and recording methods in the cloud, Make sure email, network access, and web protection attributes are enabled, Understand the benefits of various Cisco security products.

In this guide, we will cover the Securing Email with Cisco Email Security Appliance (300-720 SESA) Exam, Securing Email with Cisco Email Security Appliance (300-720 SESA) Exam Certification salary and all aspects of the Securing Email with Cisco Email Security Appliance (300-720 SESA) Exam Certification.

 

NEW QUESTION 10
Which antispam feature is utilized to give end users control to allow emails that are spam to be delivered to their inbox, overriding any spam verdict and action on the Cisco ESA?

  • A. end user passthrough list
  • B. end user safelist
  • C. end user spam quarantine access
  • D. end user allow list

Answer: C

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/esa_user_guide_11-1/b_ESA_Admin_Guide_ces_11_1/b_ESA_Admin_Guide_chapter_011111.pdf

 

NEW QUESTION 11
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?

  • A. Spam Quarantine External Authentication Query
  • B. Spam Quarantine End-User Authentication Query
  • C. Enabling the End-User Safelist/Blocklist feature
  • D. Spam Quarantine Alias Consolidation Query

Answer: B

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118692- configure-esa-00.html

 

NEW QUESTION 12
An organization wants to use its existing Cisco ESA to host a new domain and enforce a separate corporate policy for that domain.
What should be done on the Cisco ESA to achieve this?

  • A. Use the dsestconf command to add a separate destination for the new domain.
  • B. Use the altrchost command to add a separate gateway for the new domain.
  • C. Use the smtproutes command to configure a SMTP route for the new domain.
  • D. Use the deli very config command to configure mail delivery for the new domain.

Answer: C

 

NEW QUESTION 13


Refer to the exhibits. What must be done to enforce end user authentication before accessing quarantine?

  • A. Change the end user quarantine access setting from None authentication to Mailbox.
  • B. Enable SPAM Quarantine Notification and add the %quarantine_url% variable.
  • C. Change the end user quarantine access from None authentication to SAAS.
  • D. Enable SPAM notification and use LDAP for authentication.

Answer: D

 

NEW QUESTION 14
Which two certificate authority lists are available in Cisco ESA? (Choose two.)

  • A. system
  • B. user
  • C. demo
  • D. custom
  • E. default

Answer: A,D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_11_1_chapter_011000.html#task_1194859

 

NEW QUESTION 15
What is the default behavior of any listener for TLS communication?

  • A. preferred-verify
  • B. required
  • C. off
  • D. preferred

Answer: C

 

NEW QUESTION 16
Which benefit does enabling external spam quarantine on Cisco SMA provide?

  • A. access to the spam quarantine interface on which a user can release, duplicate, or delete
  • B. ability to scan messages by using two engines to increase a catch rate
  • C. ability to back up spam quarantine from multiple Cisco ESAs to one central console
  • D. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/security_management/sma/sma11-0/user_guide/ b_SMA_Admin_Guide/b_SMA_Admin_Guide_chapter_010101.html

 

NEW QUESTION 17
Which SMTP extension does Cisco ESA support for email security?

  • A. PIPELINING
  • B. UTF8SMTP
  • C. ETRN
  • D. STARTTLS

Answer: D

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011000.html

 

NEW QUESTION 18
An administrator needs to configure Cisco ESA to ensure that emails are sent and authorized by the owner of the domain. Which two steps must be performed to accomplish this task? (Choose two.)

  • A. Generate keys.
  • B. Create Mx record.
  • C. Create signing profile.
  • D. Create DMARC profile.
  • E. Enable SPF verification.

Answer: D,E

 

NEW QUESTION 19
An engineer is tasked with reviewing mail logs to confirm that messages sent from domain abc.com are passing SPF verification and being accepted by the Cisco ESA. The engineer notices that SPF verification is not being performed and that SPF is not being referenced in the logs for messages sent from domain abc.com.
Why is the verification not working properly?

  • A. The SPF conformance level is set to SIDF compatible on the Mail Flow Policy.
  • B. SPF verification is disabled on the Mail Flow Policy.
  • C. SPF verification is disabled in the Recipient Access Table.
  • D. An SPF verification Content Filter has not been created.

Answer: D

 

NEW QUESTION 20
Which action must be taken before a custom quarantine that is being used can be deleted?

  • A. Delete the quarantine that is not assigned to a filter.
  • B. Delete only the unused quarantine.
  • C. Delete the quarantine that is assigned to a filter.
  • D. Remove the quarantine from the message action of a filter.

Answer: D

 

NEW QUESTION 21
Which process is skipped when an email is received from safedomain.com, which is on the safelist?

  • A. antispam scanning
  • B. antivirus scanning
  • C. message filter
  • D. outbreak filter

Answer: C

 

NEW QUESTION 22
Which two factors must be considered when message filter processing is configured? (Choose two.)

  • A. message-filter order
  • B. MIME structure of the message
  • C. structure of the combined packet
  • D. mail policies
  • E. lateral processing

Answer: A,B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01000.html

 

NEW QUESTION 23
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?

  • A. Content filters are configured at the machine-level on esa1.
  • B. DLP is configured at the cluster-level on esa2.
  • C. DLP is not configured on host1.
  • D. DLP is configured at the domain-level on esa1.

Answer: C

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118026-technote- esa-00.html

 

NEW QUESTION 24
Which two query types are available when an LDAP profile is configured? (Choose two.)

  • A. recursive
  • B. group
  • C. routing
  • D. user
  • E. proxy consolidation

Answer: B,C

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011010.html

 

NEW QUESTION 25
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?

  • A. TXT record
  • B. MX record
  • C. AAAA record
  • D. PTR record

Answer: A

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/213939-esa- configure-dkim-signing.html

 

NEW QUESTION 26
What is the default HTTPS port when configuring spam quarantine on Cisco ESA?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C

 

NEW QUESTION 27
Which Cisco ESA security service is configured only through an outgoing mail policy?

  • A. Outbreak Filters
  • B. DLP
  • C. AMP
    Reference https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-0/user_guide_fs/ b_ESA_Admin_Guide_11_0/b_ESA_Admin_Guide_chapter_01001.html
  • D. antivirus

Answer: B

 

NEW QUESTION 28
Which two features are applied to either incoming or outgoing mail policies? (Choose two.)

  • A. antivirus
  • B. Indication of Compromise
  • C. outbreak filters
  • D. application filtering
  • E. sender reputation filtering

Answer: A,C

 

NEW QUESTION 29
Refer to the exhibit.

Which SPF record is valid for mycompany.com?

  • A. v=spf1 a mx ip4:10.1.10.23 -all
  • B. v=spf1 a mx ip4:172.16.18.230 -all
  • C. v=spf1 a mx ip4:199.209.31.21 -all
  • D. v=spf1 a mx ip4:199.209.31.2 -all

Answer: B

 

NEW QUESTION 30
Which action must be taken before a custom quarantine that is being used can be deleted?

  • A. Delete the quarantine that is not assigned to a filter.
  • B. Delete only the unused quarantine.
  • C. Delete the quarantine that is assigned to a filter.
  • D. Remove the quarantine from the message action of a filter.

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011111.html

 

NEW QUESTION 31
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?

  • A. antivirus
  • B. data loss prevention
  • C. quarantine threat level
  • D. antispam

Answer: D

 

NEW QUESTION 32
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Configure a content dictionary with executive email addresses.
  • B. Configure a content dictionary with friendly names.
  • C. Configure a filter to use the Forged Email Detection rule and dictionary.
  • D. Enable Forged Email Detection on the Security Services page.
  • E. Configure a filter to check the Header From value against the Forged Email Detection dictionary.

Answer: A,C

Explanation:
Explanation/Reference: https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11

 

NEW QUESTION 33
What is the default port to deliver emails from the Cisco ESA to the Cisco SMA using the centralized Spam Quarantine?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: D

 

NEW QUESTION 34
......

Exam Engine for 300-720 Exam Free Demo & 365 Day Updates: https://www.passexamdumps.com/300-720-valid-exam-dumps.html

300-720 PDF Questions and Testing Engine With 92 Questions: https://drive.google.com/open?id=18AmaAOCL0pNteK94fAfh9iBa2V7eT1Lv