Cisco New 2024 300-720 Sample Questions Reliable 300-720 Test Engine Feel Cisco 300-720 Dumps PDF Will likely be The best Option Cisco 300-720 certification exam is designed to test the knowledge and skills of professionals who want to secure email using the Cisco Email Security Appliance. Securing Email with Cisco Email Security Appliance certification exam is ideal for security professionals, network [...]

Cisco New 2024 300-720 Sample Questions Reliable 300-720 Test Engine [Q33-Q57]

Share

Cisco New 2024 300-720 Sample Questions Reliable 300-720 Test Engine

Feel Cisco 300-720 Dumps PDF Will likely be The best Option


Cisco 300-720 certification exam is designed to test the knowledge and skills of professionals who want to secure email using the Cisco Email Security Appliance. Securing Email with Cisco Email Security Appliance certification exam is ideal for security professionals, network administrators, and engineers who want to validate their expertise in email security and demonstrate their ability to configure, deploy, and maintain the Cisco Email Security Appliance.


Cisco 300-720 certification is highly valued in the industry and is recognized by many organizations worldwide. Securing Email with Cisco Email Security Appliance certification demonstrates that a professional has the skills and knowledge required to secure email using Cisco Email Security Appliance technologies. Securing Email with Cisco Email Security Appliance certification is ideal for network security professionals, IT managers, and network administrators who want to enhance their skills in email security and strengthen their resume.

 

NEW QUESTION # 33
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?

  • A. Debug the mail flow policy.
  • B. Export the SLBL to a .csv file.
  • C. Show the SLBL cache on the CLI.
  • D. Monitor Incoming/Outgoing Listener.

Answer: B

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html


NEW QUESTION # 34
Email encryption is configured on a Cisco ESA that uses CRES.
Which action is taken on a message when CRES is unavailable?

  • A. It is sent in clear text.
  • B. It is encrypted by a Cisco encryption appliance.
  • C. It is dropped and an error message is sent to the sender.
  • D. It is requeued.

Answer: A

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117863- configure-esa-00.html


NEW QUESTION # 35
Which two certificate authority lists are available in Cisco ESA? (Choose two.)

  • A. demo
  • B. system
  • C. default
  • D. custom
  • E. user

Answer: B,D

Explanation:
System: This is the default list of trusted certificate authorities that is provided by Cisco and updated automatically. It contains the certificates of well-known and widely used certificate authorities, such as VeriSign, Thawte, and GoDaddy.
Custom: This is the list of additional certificate authorities that you can add manually or import from a file. It allows you to trust certificates that are issued by your own or third-party certificate authorities that are not included in the system list.


NEW QUESTION # 36
An organization has a strict policy on URLs embedded in emails. The policy allows visibility into what the URL is but does not allow the user to click it. Which action must be taken to meet the requirements of the security policy?

  • A. Redirect the URL to the Cisco security proxy
  • B. Replace the URL with text
  • C. Enable the URL quarantine policy
  • D. Defang the URL.

Answer: D

Explanation:
To meet the security policy of allowing visibility into what the URL is but not allowing the user to click it, the administrator must defang the URL. This means that the URL will be modified in a way that it is still readable by humans but not clickable by browsers. For example, http://example.com could be defanged as hxxp://example[.]com. Reference: [Cisco Secure Email Gateway Administrator Guide - Defanging URLs in Messages]


NEW QUESTION # 37
Which two action types are performed by Cisco ESA message filters? (Choose two.)

  • A. discard actions
  • B. non-final actions
  • C. filter actions
  • D. quarantine actions
  • E. final actions

Answer: B,E


NEW QUESTION # 38
An analyst creates a new content dictionary to use with Forged Email Detection.
Which entry will be added into the dictionary?

Answer: C

Explanation:
A content dictionary is a list of words or phrases that can be used to match against message content in Cisco ESA. For Forged Email Detection, a content dictionary can be used to specify the display names of internal senders that should not appear in the From header of external messages. The display name is usually the name of the sender as it appears in the email client, such as Alpha Beta. Therefore, the entry that will be added into the dictionary for this purpose is Alpha Beta.


NEW QUESTION # 39
A network administrator notices that there are a high number of queries to the LDAP server. The mail logs show an entry "550 Too many invalid recipients | Connection closed by foreign host." Which feature must be used to address this?

  • A. SMTP
  • B. DHAP
  • C. LDAP
  • D. SBRS

Answer: A


NEW QUESTION # 40
When outbreak filters are configured, which two actions are used to protect users from outbreaks?
(Choose two.)

  • A. abandon
  • B. delay
  • C. redirect
  • D. return
  • E. drop

Answer: B,C

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html


NEW QUESTION # 41
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?

  • A. Enabling the End-User Safelist/Blocklist feature
  • B. Spam Quarantine End-User Authentication Query
  • C. Spam Quarantine External Authentication Query
  • D. Spam Quarantine Alias Consolidation Query

Answer: B

Explanation:
Spam Quarantine End-User Authentication Query is a query that Cisco ESA performs against an LDAP server to validate the end-user credentials during login to the End-User Quarantine.


NEW QUESTION # 42
How does the graymail safe unsubscribe feature function?

  • A. It checks the URI reputation and category and allows the content filter to take an action on it.
  • B. It checks the reputation of the URI and performs the unsubscribe process on behalf of the end user.
  • C. It strips the malicious content of the URI before unsubscribing.
  • D. It redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe.

Answer: B

Explanation:
Secure unsubscribe option for end users. Mimicking an unsubscribe option is a popular phishing technique. For this reason, the end users are generally wary of clicking unknown unsubscribe links. For such scenarios, the cloud-based Unsubscribe Service extracts the original unsubscribe URI, checks the reputation of the URI, and then performs the unsubscribe process on behalf of the end user. This protects end users from malicious threats masquerading as unsubscribe links. https://www.cisco.com/c/en/us/td/docs/security/esa/esa14-2-1/User_Guide/b_ESA_Admin_Guide_14-2-1/b_ESA_Admin_Guide_12_1_chapter_01110.html#id_101033


NEW QUESTION # 43
Drag and Drop Question
An administrator must ensure that emails sent from [email protected] are routed through an alternate virtual gateway. Drag and drop the snippet from the bottom onto the blank in the graphic to finish the message filter syntax. Not all snippets are used.

Answer:

Explanation:


NEW QUESTION # 44


Refer to the exhibit. Which configuration on the scan behavior must be updated to allow the attachment to be scanned on the Cisco ESA?

  • A. Increase the maximum attachment size to scan to a larger value.
  • B. Enable assume match pattern if the email was not scanned for any reason.
  • C. Increase the maximum recursion depth from 5 to a larger value.
  • D. Add an additional mapping for attachment type for zip files.

Answer: D


NEW QUESTION # 45
Which ESA function maintains a set of rules that control incoming connections from remote hosts for a listener?

  • A. HAT
  • B. LDAP
  • C. RAT
  • D. VEST
  • E. Sender group

Answer: A


NEW QUESTION # 46
Which two configurations are used on multiple LDAP servers to connect with Cisco ESA?
(Choose two.)

  • A. active-standby
  • B. SLA monitor
  • C. failover
  • D. active-active
  • E. load balancing

Answer: C,E


NEW QUESTION # 47
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?

  • A. Map the envelope sender address to the host.
  • B. Set up the interface group with the flag.
  • C. Issue the altsrchost command.
  • D. Apply a filter on the message.

Answer: D

Explanation:
A filter is a method that enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way. A filter is a rule that allows Cisco ESA to perform actions on messages based on predefined or custom conditions, such as headers, envelope, body, attachments, etc.
To deliver a flagged message to a specific virtual gateway address using a filter, the engineer can create a content filter or message filter that matches the flag condition and applies an action of "deliver via alternate host" with the virtual gateway address as the parameter.
The other options are not methods that enable an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way, because they have more limitations or requirements than using a filter.


NEW QUESTION # 48
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)

  • A. Enable antispam scanning.
  • B. Enable antivirus scanning.
  • C. Enable port bouncing.
  • D. Enable email relay.
  • E. Enable outbreak filters.

Answer: A,E

Explanation:
Undesirable URL protection is a feature that allows Cisco ESA to detect and block messages that contain URLs that lead to malicious or unwanted websites, such as phishing, malware, or adult content sites. To enable this feature, outbreak filters and antispam scanning must be enabled on Cisco ESA.


NEW QUESTION # 49
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Configure a content dictionary with friendly names.
  • B. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
  • C. Configure a filter to use the Forged Email Detection rule and dictionary.
  • D. Enable Forged Email Detection on the Security Services page.
  • E. Configure a content dictionary with executive email addresses.

Answer: C,E

Explanation:
Reference:
https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11


NEW QUESTION # 50
Refer to the exhibit. Which configuration on the scan behavior must be updated to allow the attachment to be scanned on the Cisco ESA?

  • A. Enable assume match pattern if the email was not scanned for any reason.
  • B. Add an additional mapping for attachment type for zip files.
  • C. Increase the maximum recursion depth from 5 to a larger value.
  • D. Increase the maximum attachment size to scan to a larger value.

Answer: D

Explanation:
The maximum attachment size to scan is a configuration on the scan behavior that determines the maximum size of an attachment that Cisco ESA will scan for viruses and malware. If an attachment exceeds this size, Cisco ESA will apply the configured action for unscannable messages, such as deliver, drop, or quarantine.
To allow the attachment to be scanned on the Cisco ESA, this configuration must be updated to a larger value than the attachment size, which is 10 MB according to the message header.
The other options are not valid configurations to allow the attachment to be scanned on the Cisco ESA, because they do not affect the maximum attachment size to scan.


NEW QUESTION # 51
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA.
Which outgoing mail policy feature should be configured to catch this content before it leaves the network?

  • A. file reputation filtering
  • B. outbreak filtering
  • C. data loss prevention
  • D. file analysis

Answer: B


NEW QUESTION # 52
Which type of query must be configured when setting up the Spam Quarantine while merging notifications?

  • A. Spam Quarantine Alias Masquerading Query
  • B. Spam Quarantine Alias Consolidation Query
  • C. Spam Quarantine Alias Authentication Query
  • D. Spam Quarantine Alias Routing Query

Answer: B

Explanation:
Spam Quarantine Alias Consolidation Query is a type of query that must be configured when setting up the Spam Quarantine while merging notifications on Cisco ESA. This query allows Cisco ESA to consolidate multiple email addresses that belong to the same end user into one entry in the Spam Quarantine, and send only one notification email to that end user with all the quarantined messages for all their email addresses.


NEW QUESTION # 53
An administrator needs to configure Cisco ESA to ensure that emails are sent and authorized by the owner of the domain. Which two steps must be performed to accomplish this task? (Choose two.)

  • A. Create signing profile.
  • B. Enable SPF verification.
  • C. Create DMARC profile.
  • D. Create Mx record.
  • E. Generate keys.

Answer: B,C


NEW QUESTION # 54
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Configure a content dictionary with friendly names.
  • B. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
  • C. Configure a filter to use the Forged Email Detection rule and dictionary.
  • D. Enable Forged Email Detection on the Security Services page.
  • E. Configure a content dictionary with executive email addresses.

Answer: C,E


NEW QUESTION # 55
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?

  • A. Map the envelope sender address to the host.
  • B. Set up the interface group with the flag.
  • C. Issue the altsrchost command.
  • D. Apply a filter on the message.

Answer: C

Explanation:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-
1/user_guide/b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01000.html#con_1133
810


NEW QUESTION # 56
An administrator notices that the Cisco Secure Email Gateway delivery queue on an appliance is consistently full. After further investigation, it is determined that the IP addresses currently in use by appliance are being rate-limited by some destinations. The administrator creates a new interface with an additional IP address using virtual gateway technology, but the issue is not solved Which configuration change resolves the issue?

  • A. Use the CLI command alt-src-host to set the new interface as a possible delivery candidate.
  • B. Use the CLI command deliveryconfig to set the new interface as the primary interface for mail delivery
  • C. Use the CLI command loadbalance auto to enable mail delivery over all interfaces.
  • D. Use the CLI command altsrchost to set the new interface as the source IP address for all mail.

Answer: B

Explanation:
Determining Which Interface is Used for Mail Delivery Unless you specify the output interface via the deliveryconfig</code> command or via a message filter ( alt-src-host ), or through the use of a virtual gateway, the output interface is selected by the AsyncOS routing table. https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_011001.html?bookSearch=true


NEW QUESTION # 57
......


Cisco 300-720 certification exam is ideal for security professionals who want to work with Cisco Email Security Appliance and enhance their knowledge of email security. Securing Email with Cisco Email Security Appliance certification validates your expertise in email security and demonstrates your ability to secure email infrastructure and protect against email-based security threats. Securing Email with Cisco Email Security Appliance certification is recognized worldwide and is highly valued by employers in the security industry.

 

Use Valid New 300-720 Test Notes & 300-720 Valid Exam Guide: https://pass4sure.guidetorrent.com/300-720-dumps-questions.html