Download Cisco 300-720 Mock Test Study Material
300-720 Questions Prepare with Learning Information
Professionals who pass the Cisco 300-720 exam can expect to have a competitive advantage in the job market. They will be recognized as experts in email security and Cisco Email Security Appliance, which is a valuable skill in today's digital world. They can also expect to have better job opportunities and higher salaries compared to their peers who do not hold this certification.
NEW QUESTION # 66
Which two statements about configuring message filters within the Cisco ESA are true? (Choose two.)
- A. Message filters can be configured only from the web user interface.
- B. The filters command executed from the CLI is used to configure the message filters.
- C. The filterconfig command executed from the CLI is used to configure message filters.
- D. Message filters can be configured only from the CLI.
- E. Message filters configuration within the web user interface is located within Incoming Content Filters.
Answer: B,D
Explanation:
Message filters can only be applied to the ESA via command line. So, you will need command line access to the ESA.
Log into the ESA via command line.
Run the following highlighted commands to apply the message filter to the ESA:
ironport.example.com> filters
Choose the operation you want to perform:
- NEW - Create a new filter.
- IMPORT - Import a filter script from a file.
[]> NEW
Enter filter script. Enter '.' on its own line to end.
large_spam_no_attachment:
if ((body-size > 2097152) AND NOT (attachment-size > 0)) {
quarantine("large_spam");
log-entry("*****This is a large message with no attachments*****");
}
.
1 filters added.
NEW QUESTION # 67
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA.
Which outgoing mail policy feature should be configured to catch this content before it leaves the network?
- A. data loss prevention
- B. outbreak filtering
- C. file analysis
- D. file reputation filtering
Answer: B
NEW QUESTION # 68
An email containing a URL passes through the Cisco ESA that has content filtering disabled for all mail policies. The sender is [email protected], the recipients are [email protected], [email protected], [email protected], and [email protected]. The subject of the email is Test Document395898847. An administrator wants to add a policy to ensure that the Cisco ESA evaluates the web reputation score before permitting this email.
Which two criteria must be used by the administrator to achieve this? (Choose two.)
- A. Email does not match [email protected]
- B. Email body contains a URL
- C. Sender matches test1.com
- D. Subject contains Test Document"
- E. Date and time of email
Answer: B,D
NEW QUESTION # 69
Which scenario prevents a message from being sent to the quarantine as an action in the scan behavior on Cisco ESA?
- A. More than one email pipeline is defined.
- B. The "add custom header" action is performed first.
- C. The "modify the message subject" is already set.
- D. A policy quarantine is missing.
Answer: D
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-
0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.320
NEW QUESTION # 70
When outbreak filters are configured, which two actions are used to protect users from outbreaks? (Choose two.)
- A. redirect
- B. drop
- C. delay
- D. abandon
- E. return
Answer: A,C
Explanation:
The Outbreak Filters feature uses three tactics to protect your users from outbreaks:
Delay.
Redirect.
Modify.
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html
NEW QUESTION # 71
Which content filter condition checks to see if the "From: header" in the message is similar to any of the users in the content dictionary?
- A. Duplicate Boundaries Verification
- B. Subject Header
- C. Forged Email Detection
- D. SPF Verification
Answer: C
Explanation:
The content filter condition that checks to see if the "From: header" in the message is similar to any of the users in the content dictionary is Forged Email Detection. This condition compares the sender's name or email address with a list of names or email addresses in a content dictionary and triggers an action if they match or are similar. Reference: [Cisco Secure Email Gateway Administrator Guide - Forged Email Detection]
NEW QUESTION # 72
A Cisco ESA administrator has several mail policies configured. While testing policy match using a specific sender, the email was not matching the expected policy.
What is the reason of this?
- A. The message header with the highest priority is checked against each policy in a top-down fashion.
- B. The Tram* header is checked against all policies in a top-down fashion.
- C. The message header with the highest priority is checked against the Default policy in a top-down fashion.
- D. The To" header is checked against all policies in a top-down fashion.
Answer: A
Explanation:
The envelope sender and the envelope recipeint have a higher priority over the sender header when you match a message to a mail policy. If you configure a mail policy to match a specific user, the messages are automatically classified into the mail policy based on the envelope sender and the envelope recipient. https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01001.html
NEW QUESTION # 73
What is the default behavior of any listener for TLS communication?
- A. required
- B. preferred
- C. preferred-verify
- D. off
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118954-config-esa- 00.html
NEW QUESTION # 74
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?
- A. MX record
- B. AAAA record
- C. TXT record
- D. PTR record
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/213939-esa- configure-dkim-signing.html
NEW QUESTION # 75
Which process is skipped when an email is received from safedomain.com, which is on the safelist?
- A. message filter
- B. outbreak filter
- C. antivirus scanning
- D. antispam scanning
Answer: A
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/214269-filter-to- handle-messages-that-skipped-d.html
NEW QUESTION # 76
Users have been complaining of a higher volume of emails containing profanity. The network administrator will need to leverage dictionaries and create specific conditions to reduce the number of inappropriate emails.
Which two filters should be configured to address this? (Choose two.)
- A. message
- B. VOF
- C. spam
- D. sender group
- E. content
Answer: C,E
NEW QUESTION # 77
Which component must be added to the content filter to trigger on failed SPF Verification or DKIM Authentication verdicts?
- A. response
- B. status
- C. parameter
- D. condition
Answer: D
NEW QUESTION # 78
Which two statements about configuring message filters within the Cisco ESA are true? (Choose two.)
- A. Message filters can be configured only from the web user interface.
- B. The filters command executed from the CLI is used to configure the message filters.
- C. The filterconfig command executed from the CLI is used to configure message filters.
- D. Message filters can be configured only from the CLI.
- E. Message filters configuration within the web user interface is located within Incoming Content Filters.
Answer: B,D
Explanation:
Explanation/Reference:
Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/213940-esa- using-a-message-filter-to-take-act.html
NEW QUESTION # 79
A company has deployed a new mandate that requires all emails sent externally from the Sales Department to be scanned by DLP for PCI-DSS compliance. A new DLP policy has been created on the Cisco ESA and needs to be assigned to a mail policy named `Sales' that has yet to be created.
Which mail policy should be created to accomplish this task?
- A. Outgoing Mail Flow Policy
- B. Outgoing Mail Policy
- C. Preliminary Mail Policy
- D. Incoming Mail Flow Policy
Answer: B
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-
0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_010001.html#task_140
94
NEW QUESTION # 80
Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.
Answer:
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/ b_ESA_Admin_Guide_chapter_010001.html (message actions)
NEW QUESTION # 81
......
Cisco Email Security Appliance is a powerful email filtering solution that provides advanced threat protection for organizations. The ESA protects against spam, viruses, malware, phishing attacks and other email-based threats. It also provides encryption and data loss prevention (DLP) features to secure confidential information in outgoing emails. As email is a crucial communication tool in businesses, it is essential to have a robust email security solution, which is where Cisco ESA comes in.
Cisco Email Security Appliance is a powerful email security solution that helps protect organizations from advanced email threats. The appliance provides protection against spam, viruses, malware, and phishing attacks. It also offers advanced features such as data loss prevention and email encryption. By passing the 300-720 certification exam, you will gain the skills and knowledge needed to configure and manage this powerful email security solution.
Most Reliable Cisco 300-720 Training Materials: https://www.testvalid.com/300-720-exam-collection.html
Practice Material for 300-720 Exam Question Preparation: https://drive.google.com/open?id=1DiCsrBIxz6cSD2Jhnd-8VJEmG42qhRca