[Nov-2021] Dumps Brief Outline Of The 300-720 Exam - Exam-Killer
300-720 Training & Certification Get Latest CCNP Security
What is the Exam Pattern for Cisco 300-720 Exam
Format: Multiple choices, multiple answers
- Passing score: 70%
- Language: English, Japanese
- Length of Exam: 90 minutes
- Number of questions: 65-75
NEW QUESTION 18
Which Cisco ESA security service is configured only through an outgoing mail policy?
- A. AMP
- B. antivirus
- C. DLP
- D. Outbreak Filters
Answer: C
Explanation:
Explanation
Reference https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-0/user_guide_fs/ b_ESA_Admin_Guide_11_0/b_ESA_Admin_Guide_chapter_01001.html
NEW QUESTION 19
An engineer is configuring a Cisco ESA for the first time and needs to ensure that any email traffic coming from the internal SMTP servers is relayed out through the Cisco ESA and is tied to the Outgoing Mail Policies.
Which Mail Flow Policy setting should be modified to accomplish this goal?
- A. Connection Behavior
- B. Exception List
- C. Reverse Connection Verification
- D. Bounce Detection Signing
Answer: A
NEW QUESTION 20
What are two phases of the Cisco ESA email pipeline? (Choose two.)
- A. workqueue
- B. reject
- C. quarantine
- D. delivery
- E. action
Answer: A,D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-1/user_guide/ b_ESA_Admin_Guide_12_1/b_ESA_Admin_Guide_12_1_chapter_011.pdf (p.1)
NEW QUESTION 21
An engineer is tasked with reviewing mail logs to confirm that messages sent from domain abc.com are passing SPF verification and being accepted by the Cisco ESA. The engineer notices that SPF verification is not being performed and that SPF is not being referenced in the logs for messages sent from domain abc.com.
Why is the verification not working properly?
- A. SPF verification is disabled on the Mail Flow Policy.
- B. The SPF conformance level is set to SIDF compatible on the Mail Flow Policy.
- C. An SPF verification Content Filter has not been created.
- D. SPF verification is disabled in the Recipient Access Table.
Answer: C
NEW QUESTION 22
How does the graymail safe unsubscribe feature function?
- A. It checks the URI reputation and category and allows the content filter to take an action on it.
- B. It redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe.
- C. It checks the reputation of the URI and performs the unsubscribe process on behalf of the end user.
- D. It strips the malicious content of the URI before unsubscribing.
Answer: C
NEW QUESTION 23
What must be configured to allow the Cisco ESA to encrypt an email using the Cisco Registered Envelope Service?
- A. content filter to forward the email to the Cisco Registered Envelope server
- B. message encryption from a content filter that select "Message Encryption" over TLS
- C. message encryption from the mail flow policies with "CRES" selected
- D. provisioned email encryption profile
Answer: B
NEW QUESTION 24
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?
- A. Debug the mail flow policy.
- B. Monitor Incoming/Outgoing Listener.
- C. Export the SLBL to a .csv file.
- D. Show the SLBL cache on the CLI.
Answer: C
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html
NEW QUESTION 25
An administrator has created a content filter to quarantine all messages that result in an SPF hardfail to review the messages and determine whether a trusted partner has accidentally misconfigured the DNS settings. The administrator sets the policy quarantine to release the messages after 24 hours, allowing time to review while not interrupting business.
Which additional option should be used to help the end users be aware of the elevated risk of interacting with these messages?
- A. Modify Subject
- B. Notify Sender
- C. Notify Recipient
- D. Strip Attachments
Answer: A
NEW QUESTION 26
Which two are configured in the DMARC verification profile? (Choose two.)
- A. message action into an incoming or outgoing content filter
- B. name of the verification profile
- C. message action to take when the policy is reject/quarantine
- D. ESA listeners to use the verification profile
- E. minimum number of signatures to verify
Answer: B,C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_010101.html#task_1231917
NEW QUESTION 27
Which attack is mitigated by using Bounce Verification?
- A. smurf
- B. eavesdropping
- C. denial of service
- D. spoof
Answer: C
Explanation:
Explanation/Reference: https://www.networkworld.com/article/2305394/ironport-adds-bounce-back-verification-for-e- mail.html
NEW QUESTION 28
When virtual gateways are configured, which two distinct attributes are allocated to each virtual gateway address? (Choose two.)
- A. domain
- B. DHCP server address
- C. IP address
- D. DNS server address
- E. external spam quarantine
Answer: A,C
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118542-qa-esa- 00.html
NEW QUESTION 29
Which attack is mitigated by using Bounce Verification?
- A. smurf
- B. eavesdropping
- C. denial of service
- D. spoof
Answer: C
NEW QUESTION 30
When URL logging is configured on a Cisco ESA, which feature must be enabled first?
- A. antivirus
- B. antispam
- C. senderbase reputation filter
- D. virus outbreak filter
Answer: D
NEW QUESTION 31 

Refer to the exhibit. Which configuration on the scan behavior must be updated to allow the attachment to be scanned on the Cisco ESA?
- A. Enable assume match pattern if the email was not scanned for any reason.
- B. Increase the maximum attachment size to scan to a larger value.
- C. Add an additional mapping for attachment type for zip files.
- D. Increase the maximum recursion depth from 5 to a larger value.
Answer: C
NEW QUESTION 32
Which two statements about configuring message filters within the Cisco ESA are true? (Choose two.)
- A. The filterconfig command executed from the CLI is used to configure message filters.
- B. Message filters configuration within the web user interface is located within Incoming Content Filters.
- C. Message filters can be configured only from the web user interface.
- D. Message filters can be configured only from the CLI.
- E. The filters command executed from the CLI is used to configure the message filters.
Answer: D,E
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/213940-esa-using-a- message-filter-to-take-act.html
NEW QUESTION 33
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?
- A. Map the envelope sender address to the host.
- B. Apply a filter on the message.
- C. Issue the altsrchost command.
- D. Set up the interface group with the flag.
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01000.html#con_1133810
NEW QUESTION 34
What is a benefit of implementing URL filtering on the Cisco ESA?
- A. removes threats from malicious URLs
- B. provides URL reputation protection
- C. blacklists spam
- D. enhances reputation against malicious URLs
Answer: B
NEW QUESTION 35
What is the default HTTPS port when configuring spam quarantine on Cisco ESA?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: C
NEW QUESTION 36
What is a valid content filter action?
- A. skip antispam
- B. quarantine
- C. decrypt on delivery
- D. archive
Answer: B
NEW QUESTION 37
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?
- A. antivirus
- B. quarantine threat level
- C. antispam
- D. data loss prevention
Answer: C
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html
NEW QUESTION 38
What is the default port to deliver emails from the Cisco ESA to the Cisco SMA using the centralized Spam Quarantine?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: A
NEW QUESTION 39
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?
- A. AAAA record
- B. MX record
- C. PTR record
- D. TXT record
Answer: D
NEW QUESTION 40
......
Certification Training for 300-720 Exam Dumps Test Engine: https://www.exam-killer.com/300-720-valid-questions.html
CCNP Security 300-720 Real Exam Questions and Answers FREE Updated: https://drive.google.com/open?id=1NTV9lxu_74XzojwWSHbasIU0-tGY4M27

