Best Cisco 300-720 2023 Training With 102 QA's [Q11-Q36]

Share

Best Cisco 300-720 2023 Training With 102 QA's

Cisco 300-720 Certification Exam Questions

NEW QUESTION 11
Refer to the exhibit.

Which SPF record is valid for mycompany.com?

  • A. v=spf1 a mx ip4:10.1.10.23 -all
  • B. v=spf1 a mx ip4:199.209.31.21 -all
  • C. v=spf1 a mx ip4:199.209.31.2 -all
  • D. v=spf1 a mx ip4:172.16.18.230 -all

Answer: D

 

NEW QUESTION 12
Which two factors must be considered when message filter processing is configured? (Choose two.)

  • A. mail policies
  • B. structure of the combined packet
  • C. lateral processing
  • D. message-filter order
  • E. MIME structure of the message

Answer: D,E

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01000.html

 

NEW QUESTION 13
Email encryption is configured on a Cisco ESA that uses CRES.
Which action is taken on a message when CRES is unavailable?

  • A. It is encrypted by a Cisco encryption appliance.
  • B. It is requeued.
  • C. It is sent in clear text.
  • D. It is dropped and an error message is sent to the sender.

Answer: B

Explanation:

https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-
0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.577

 

NEW QUESTION 14
Which SMTP extension does Cisco ESA support for email security?

  • A. STARTTLS
  • B. PIPELINING
  • C. UTF8SMTP
  • D. ETRN

Answer: A

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011000.html

 

NEW QUESTION 15
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Enable Forged Email Detection on the Security Services page.
  • B. Configure a content dictionary with executive email addresses.
  • C. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
  • D. Configure a content dictionary with friendly names.
  • E. Configure a filter to use the Forged Email Detection rule and dictionary.

Answer: B,E

Explanation:
Reference:
https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11

 

NEW QUESTION 16
An email containing a URL passes through the Cisco ESA that has content filtering disabled for all mail policies. The sender is [email protected], the recipients are [email protected], [email protected], [email protected], and [email protected]. The subject of the email is Test Document395898847. An administrator wants to add a policy to ensure that the Cisco ESA evaluates the web reputation score before permitting this email.
Which two criteria must be used by the administrator to achieve this? (Choose two.)

  • A. Email does not match [email protected]
  • B. Email body contains a URL
  • C. Sender matches test1.com
  • D. Date and time of email
  • E. Subject contains Test Document"

Answer: B,E

 

NEW QUESTION 17
When outbreak filters are configured, which two actions are used to protect users from outbreaks? (Choose two.)

  • A. redirect
  • B. delay
  • C. return
  • D. abandon
  • E. drop

Answer: A,B

 

NEW QUESTION 18
What is a benefit of implementing URL filtering on the Cisco ESA?

  • A. blacklists spam
  • B. enhances reputation against malicious URLs
  • C. provides URL reputation protection
  • D. removes threats from malicious URLs

Answer: C

 

NEW QUESTION 19
An administrator is managing multiple Cisco ESA devices and wants to view the quarantine emails from all devices in a central location.
How is this accomplished?

  • A. Disable the VOF feature before sending SPAM to the external quarantine.
  • B. Configure a mail policy to determine whether the message is sent to the local or external quarantine.
  • C. Configure a user policy to determine whether the message is sent to the local or external quarantine.
  • D. Disable the local quarantine before sending SPAM to the external quarantine.

Answer: B

 

NEW QUESTION 20
What is the default behavior of any listener for TLS communication?

  • A. off
  • B. preferred
  • C. preferred-verify
  • D. required

Answer: A

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118954-config-esa- 00.html

 

NEW QUESTION 21
Which two query types are available when an LDAP profile is configured? (Choose two.)

  • A. recursive
  • B. group
  • C. routing
  • D. proxy consolidation
  • E. user

Answer: B,C

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011010.html

 

NEW QUESTION 22
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?

  • A. Issue the altsrchost command.
  • B. Map the envelope sender address to the host.
  • C. Apply a filter on the message.
  • D. Set up the interface group with the flag.

Answer: A

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01000.html#con_1133810

 

NEW QUESTION 23
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?

  • A. Spam Quarantine Alias Consolidation Query
  • B. Spam Quarantine End-User Authentication Query
  • C. Enabling the End-User Safelist/Blocklist feature
  • D. Spam Quarantine External Authentication Query

Answer: B

 

NEW QUESTION 24
Which two components must be configured to perform DLP scanning? (Choose two.)

  • A. Enable a DLP policy on the Outgoing Mail Policy.
  • B. Enable a DLP policy on the DLP Policy Customizations.
  • C. Add a DLP policy to the Outgoing Content Filter.
  • D. Add a DLP policy on the Incoming Mail Policy.
  • E. Add a DLP policy to the DLP Policy Manager.

Answer: A,E

 

NEW QUESTION 25
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)

  • A. Enable port bouncing.
  • B. Enable outbreak filters.
  • C. Enable email relay.
  • D. Enable antivirus scanning.
  • E. Enable antispam scanning.

Answer: B,E

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01111.html

 

NEW QUESTION 26
Which two configurations are used on multiple LDAP servers to connect with Cisco ESA? (Choose two.)

  • A. failover
  • B. active-active
  • C. load balancing
  • D. SLA monitor
  • E. active-standby

Answer: A,C

Explanation:
Explanation
You can enter multiple host names to configure the LDAP servers for failover or load-balancing. Separate multiple entries with commas.

 

NEW QUESTION 27
Which two components form the graymail management solution in Cisco ESA? (Choose two.)

  • A. improved mail efficacy
  • B. secure subscribe option for end users
  • C. integrated graymail scanning engine
  • D. uniform unsubscription management interface for end users
  • E. cloud-based unsubscribe service

Answer: C,E

 

NEW QUESTION 28
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?

  • A. Issue the altsrchost command.
  • B. Map the envelope sender address to the host.
  • C. Apply a filter on the message.
  • D. Set up the interface group with the flag.

Answer: A

 

NEW QUESTION 29
An engineer is tasked with reviewing mail logs to confirm that messages sent from domain abc.com are passing SPF verification and being accepted by the Cisco ESA. The engineer notices that SPF verification is not being performed and that SPF is not being referenced in the logs for messages sent from domain abc.com.
Why is the verification not working properly?

  • A. SPF verification is disabled on the Mail Flow Policy.
  • B. SPF verification is disabled in the Recipient Access Table.
  • C. The SPF conformance level is set to SIDF compatible on the Mail Flow Policy.
  • D. An SPF verification Content Filter has not been created.

Answer: D

 

NEW QUESTION 30
DRAG DROP
Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.
Select and Place:

Answer:

Explanation:

Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/ b_ESA_Admin_Guide_chapter_010001.html (message actions)

 

NEW QUESTION 31
An Encryption Profile has been set up on the Cisco ESA.
Drag and drop the steps from the left for creating an outgoing content filter to encrypt emails that contains the subject "Secure:" into the correct order on the right.

Answer:

Explanation:

 

NEW QUESTION 32

Refer to the exhibit. An engineer is trying to connect to a Cisco ESA using SSH and has been unsuccessful.
Upon further inspection, the engineer notices that there is a loss of connectivity to the neighboring switch.
Which connection method should be used to determine the configuration issue?

  • A. HTTPS
  • B. Telnet
  • C. Ethernet
  • D. serial

Answer: D

 

NEW QUESTION 33
Which action is a valid fallback when a client certificate is unavailable during SMTP authentication on Cisco ESA?

  • A. LDAP Query
  • B. LDAP BIND
  • C. SMTP TLS
  • D. SMTP AUTH

Answer: D

 

NEW QUESTION 34
What is the order of virus scanning when multilayer antivirus scanning is configured?

  • A. The default engine scans for viruses first and the McAfee engine scans for viruses second.
  • B. The Sophos engine scans for viruses first and the McAfee engine scans for viruses second.
  • C. The McAfee engine scans for viruses first and the Sophos engine scans for viruses second.
  • D. The McAfee engine scans for viruses first and the default engine scans for viruses second.

Answer: D

Explanation:
If you configure multi-layer anti-virus scanning, the Cisco appliance performs virus scanning with the McAfee engine first and the Sophos engine second. It scans messages using both engines, unless the McAfee engine detects a virus. If the McAfee engine detects a virus, the Cisco appliance performs the anti-virus actions (repairing, quarantining, etc.) defined for the mail policy.
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01011.html

 

NEW QUESTION 35
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Enable Forged Email Detection on the Security Services page.
  • B. Configure a content dictionary with executive email addresses.
  • C. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
  • D. Configure a content dictionary with friendly names.
  • E. Configure a filter to use the Forged Email Detection rule and dictionary.

Answer: B,E

Explanation:
Explanation/Reference: https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11

 

NEW QUESTION 36
......


Which Subjects are on the Cisco 300-720 Exam

Candidates must know the exam topics before they start preparation. Because it will really help them in hitting the core. Our Cisco 300-720 exam dumps will include the following topics:

  • LDAP and SMTP Sessions 15%
  • Cisco Email Security Appliance Administration 15%
  • Email Authentication and Encryption 20%
  • Content and Message filters 20%

Is there any Prerequisites for Cisco 300-720 Exam

  • Prerequisites: None

 

Quickly and Easily Pass Cisco Exam with 300-720 real Dumps: https://actualtests.prep4away.com/Cisco-certification/braindumps.300-720.ete.file.html