Authentic 300-720 Dumps - Free PDF Questions to Pass [Q40-Q59]

Share

Authentic 300-720 Dumps - Free PDF Questions to Pass

Guaranteed Accomplishment with Newest Jun-2024 FREE 300-720

NEW QUESTION # 40
Which benefit does enabling external spam quarantine on Cisco SMA provide?

  • A. ability to back up spam quarantine from multiple Cisco ESAs to one central console
  • B. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console
  • C. ability to scan messages by using two engines to increase a catch rate
  • D. access to the spam quarantine interface on which a user can release, duplicate, or delete

Answer: B

Explanation:
External spam quarantine is a feature that allows Cisco SMA to store and manage spam messages quarantined by multiple Cisco ESAs in one central location, providing a unified view and administration of the spam quarantine data.


NEW QUESTION # 41
Which two actions are configured on the Cisco ESA to query LDAP servers? (Choose two.)

  • A. reject
  • B. relay
  • C. delay
  • D. route
  • E. accept

Answer: D,E

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-0/user_guide_fs/ b_ESA_Admin_Guide_11_0/b_ESA_Admin_Guide_chapter_011010.html


NEW QUESTION # 42
When outbreak filters are configured, which two actions are used to protect users from outbreaks? (Choose two.)

  • A. abandon
  • B. return
  • C. redirect
  • D. delay
  • E. drop

Answer: C,D

Explanation:
The Outbreak Filters feature uses three tactics to protect your users from outbreaks:
Delay.
Redirect.
Modify.
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html


NEW QUESTION # 43
Which antispam feature is utilized to give end users control to allow emails that are spam to be delivered to their inbox, overriding any spam verdict and action on the Cisco ESA?

  • A. end user passthrough list
  • B. end user spam quarantine access
  • C. end user allow list
  • D. end user safelist

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/esa_user_guide_11-1/b_ESA_Admin_Guide_ces_11_1/b_ESA_Admin_Guide_chapter_011111.pdf


NEW QUESTION # 44
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?

  • A. Debug the mail flow policy.
  • B. Show the SLBL cache on the CLI.
  • C. Monitor Incoming/Outgoing Listener.
  • D. Export the SLBL to a .csv file.

Answer: D

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html


NEW QUESTION # 45
Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.

Answer:

Explanation:

Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/ b_ESA_Admin_Guide_chapter_010001.html (message actions)


NEW QUESTION # 46
Which two certificate authority lists are available in Cisco ESA? (Choose two.)

  • A. demo
  • B. user
  • C. custom
  • D. default
  • E. system

Answer: C,E

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_11_1_chapter_011000.html#task_1194859


NEW QUESTION # 47
When URL logging is configured on a Cisco ESA, which feature must be enabled first?

  • A. antivirus
  • B. antispam
  • C. senderbase reputation filter
  • D. virus outbreak filter

Answer: D

Explanation:
Enabling Logging of URLs and Message Tracking Details for URLs
Logging of URL-related logs, and display of this information in Message Tracking details, is disabled by default. This includes the logs for the following events:
Category of any URL in the message matches the URL category filters
Reputation score of any URL in the message matches URL reputation filters Outbreak Filter rewrites any URL in the message To enable logging of these events, use the outbreakconfig command in the command-line interface (CLI).
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01110.html?bookSearch=true


NEW QUESTION # 48
A Cisco ESA administrator has several mail policies configured. While testing policy match using a specific sender, the email was not matching the expected policy.
What is the reason of this?

  • A. The message header with the highest priority is checked against each policy in a top-down fashion.
  • B. The Tram* header is checked against all policies in a top-down fashion.
  • C. The To" header is checked against all policies in a top-down fashion.
  • D. The message header with the highest priority is checked against the Default policy in a top-down fashion.

Answer: A

Explanation:
The envelope sender and the envelope recipeint have a higher priority over the sender header when you match a message to a mail policy. If you configure a mail policy to match a specific user, the messages are automatically classified into the mail policy based on the envelope sender and the envelope recipient. https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01001.html


NEW QUESTION # 49
An analyst creates a new content dictionary to use with Forged Email Detection.
Which entry will be added into the dictionary?

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/products/collateral/security/email-security-appliance/ whitepaper_C11-737596.html


NEW QUESTION # 50
What is the default method of remotely accessing a newly deployed Cisco Secure Email Virtual Gateway when a DHCP server is not available?

  • A. DHCP is required for the initial IP address assignment
  • B. Manual configuration of an IP address is required through the hypervisor console before remote access
  • C. Manual configuration of an IP address is required through the serial port before remote access
  • D. Use the IP address of 192.168 42 42 via the Management port

Answer: D

Explanation:
The default method of remotely accessing a newly deployed Cisco Secure Email Virtual Gateway when a DHCP server is not available is to use the IP address of 192.168.42.42 via the Management port. This IP address is assigned by default to the Management port of the virtual gateway and can be used to access the web user interface or the command-line interface of the appliance. Reference: [Cisco Secure Email Gateway Installation and Upgrade Guide - Configuring Network Settings]


NEW QUESTION # 51
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?

  • A. quarantine threat level
  • B. antivirus
  • C. antispam
  • D. data loss prevention

Answer: C

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html


NEW QUESTION # 52
Which cloud service provides a reputation verdict for email messages based on the sender domain and other attributes?

  • A. Cisco Talos
  • B. Cisco Secure Email Threat Defense
  • C. Cisco Secure Cloud Analytics
  • D. Cisco AppDynamics

Answer: A

Explanation:
Cisco Talos is a cloud service that provides a reputation verdict for email messages based on the sender domain and other attributes such as IP address, sender behavior, message content, and attachment analysis. Cisco Talos is integrated with Cisco Secure Email Gateway and provides real-time threat intelligence and protection against spam, phishing, malware, and other email-borne threats.
The other options are not valid because:
A) Cisco AppDynamics is a cloud service that provides application performance monitoring and optimization for enterprise applications. It does not provide reputation verdicts for email messages.
B) Cisco Secure Email Threat Defense is a cloud service that provides visibility and remediation capabilities for email threats detected by Cisco Secure Email Gateway. It does not provide reputation verdicts for email messages.
C) Cisco Secure Cloud Analytics is a cloud service that provides network visibility and threat detection for cloud environments. It does not provide reputation verdicts for email messages.


NEW QUESTION # 53
Which two statements about configuring message filters within the Cisco ESA are true? (Choose two.)

  • A. Message filters can be configured only from the CLI.
  • B. The filterconfig command executed from the CLI is used to configure message filters.
  • C. Message filters configuration within the web user interface is located within Incoming Content Filters.
  • D. Message filters can be configured only from the web user interface.
  • E. The filters command executed from the CLI is used to configure the message filters.

Answer: A,E

Explanation:
Message filters can only be applied to the ESA via command line. So, you will need command line access to the ESA.
Log into the ESA via command line.
Run the following highlighted commands to apply the message filter to the ESA:
ironport.example.com> filters
Choose the operation you want to perform:
- NEW - Create a new filter.
- IMPORT - Import a filter script from a file.
[]> NEW
Enter filter script. Enter '.' on its own line to end.
large_spam_no_attachment:
if ((body-size > 2097152) AND NOT (attachment-size > 0)) {
quarantine("large_spam");
log-entry("*****This is a large message with no attachments*****");
}
.
1 filters added.


NEW QUESTION # 54
What are two primary components of content filters? (Choose two.)

  • A. actions
  • B. conditions
  • C. content
  • D. subject
  • E. policies

Answer: A,B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/esa_user_guide_11-1/ b_ESA_Admin_Guide_ces_11_1/b_ESA_Admin_Guide_chapter_01010.pdf


NEW QUESTION # 55
A recent engine update was pulled down for graymail and has caused the service to start crashing. It is critical to fix this as quickly as possible.
What must be done to address this issue?

  • A. Download another update from the IMS and Graymail page.
  • B. Download another update from the Service Updates page.
  • C. Roll back to a previous version of the engine from the Services Overview page.
  • D. Roll back to a previous version of the engine from the System Health page.

Answer: C


NEW QUESTION # 56
Which two query types are available when an LDAP profile is configured? (Choose two.)

  • A. user
  • B. routing
  • C. group
  • D. proxy consolidation
  • E. recursive

Answer: A,B

Explanation:
User and routing are two query types that are available when an LDAP profile is configured on Cisco ESA. User queries are used to validate end-user credentials, such as for Spam Quarantine End-User Authentication or SMTP Authentication. Routing queries are used to determine the destination mail server for a recipient, such as for Mail Flow Policies or Delivery Methods.


NEW QUESTION # 57
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?

  • A. Debug the mail flow policy.
  • B. Show the SLBL cache on the CLI.
  • C. Monitor Incoming/Outgoing Listener.
  • D. Export the SLBL to a .csv file.

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html


NEW QUESTION # 58
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?

  • A. AAAA record
  • B. PTR record
  • C. TXT record
  • D. MX record

Answer: C

Explanation:
When DKIM (DomainKeys Identified Mail) signing is configured on Cisco ESA, the DNS record that must be updated to load the DKIM public signing key is the TXT record. The TXT record is used to store arbitrary text information in the DNS, such as the DKIM public key, which can be retrieved by the recipients to verify the DKIM signature in the message header.


NEW QUESTION # 59
......

300-720 Braindumps PDF, Cisco 300-720 Exam Cram: https://www.actualtestsit.com/Cisco/300-720-exam-prep-dumps.html

Use Valid New Free 300-720 Exam Dumps & Answers: https://drive.google.com/open?id=1EuINEEr4O8iJ1zbXf7oIAVY53_EZddIo