Authentic 300-720 Dumps With 100% Passing Rate Practice Tests Dumps
Cisco 300-720 Real Exam Questions Guaranteed Updated Dump from PassTorrent
NEW QUESTION 51
What are two phases of the Cisco ESA email pipeline? (Choose two.)
- A. quarantine
- B. reject
- C. action
- D. delivery
- E. workqueue
Answer: D,E
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-1/user_guide/ b_ESA_Admin_Guide_12_1/b_ESA_Admin_Guide_12_1_chapter_011.pdf (p.1)
NEW QUESTION 52
Which scenario prevents a message from being sent to the quarantine as an action in the scan behavior on Cisco ESA?
- A. More than one email pipeline is defined.
- B. A policy quarantine is missing.
- C. The "add custom header" action is performed first.
- D. The "modify the message subject" is already set.
Answer: A
NEW QUESTION 53
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Answer:
Explanation:

NEW QUESTION 54
Which suboption must be selected when LDAP is configured for Spam Quarantine End-User Authentication?
- A. Update Frequency
- B. Designate as the active query
- C. Server Priority
- D. Entity ID
Answer: B
NEW QUESTION 55
What is the maximum message size that can be configured for encryption on the Cisco ESA?
- A. 25 MB
- B. 15 MB
- C. 30 MB
- D. 20 MB
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117972-technote- esa-00.html
NEW QUESTION 56
To comply with a recent audit, an engineer must configure anti-virus message handling options on the incoming mail policies to attach warnings to the subject of an email.
What should be configured to meet this requirement for known viral emails?
- A. Encrypted Messages
- B. Virus Infected Messages
B Unscannable Messages - C. Positively Identified Messages
Answer: C
NEW QUESTION 57
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?
- A. PTR record
- B. AAAA record
- C. TXT record
- D. MX record
Answer: C
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/213939-esa- configure-dkim-signing.html
NEW QUESTION 58
An engineer is configuring an SMTP authentication profile on a Cisco ESA which requires certificate verification.
Which section must be configured to accomplish this goal?
- A. Verification Profiles
- B. Mail Flow Policies
- C. Sending Profiles
- D. Outgoing Mail Policies
Answer: B
NEW QUESTION 59
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?
- A. Map the envelope sender address to the host.
- B. Set up the interface group with the flag.
- C. Issue the altsrchost command.
- D. Apply a filter on the message.
Answer: C
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_01000.html#con_1133810
NEW QUESTION 60
DRAG DROP
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Select and Place:
Answer:
Explanation:
Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/ b_ESA_Admin_Guide_11_1_chapter_010101.html
NEW QUESTION 61
Which SMTP extension does Cisco ESA support for email security?
- A. ETRN
- B. PIPELINING
- C. STARTTLS
- D. UTF8SMTP
Answer: C
NEW QUESTION 62
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?
- A. Export the SLBL to a .csv file.
- B. Debug the mail flow policy.
- C. Monitor Incoming/Outgoing Listener.
- D. Show the SLBL cache on the CLI.
Answer: A
NEW QUESTION 63
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?
- A. Export the SLBL to a .csv file.
- B. Debug the mail flow policy.
- C. Monitor Incoming/Outgoing Listener.
- D. Show the SLBL cache on the CLI.
Answer: A
Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html
NEW QUESTION 64
A Cisco ESA administrator has noticed that new messages being sent to the Centralized Policy Quarantine are being released after one hour. Previously, they were being held for a day before being released.
What was configured that caused this to occur?
- A. The threshold settings were set to override the clock settings.
- B. The retention period was changed to one hour.
- C. The retention period was set to default.
- D. The threshold settings were set to default.
Answer: D
NEW QUESTION 65
Which antispam feature is utilized to give end users control to allow emails that are spam to be delivered to their inbox, overriding any spam verdict and action on the Cisco ESA?
- A. end user passthrough list
- B. end user allow list
- C. end user spam quarantine access
- D. end user safelist
Answer: C
NEW QUESTION 66
An Encryption Profile has been set up on the Cisco ESA.
Drag and drop the steps from the left for creating an outgoing content filter to encrypt emails that contains the subject "Secure:" into the correct order on the right.
Answer:
Explanation:

NEW QUESTION 67
A recent engine update was pulled down for graymail and has caused the service to start crashing. It is critical to fix this as quickly as possible.
What must be done to address this issue?
- A. Roll back to a previous version of the engine from the System Health page.
- B. Download another update from the IMS and Graymail page.
- C. Download another update from the Service Updates page.
- D. Roll back to a previous version of the engine from the Services Overview page.
Answer: D
NEW QUESTION 68
Which two components form the graymail management solution in Cisco ESA? (Choose two.)
- A. secure subscribe option for end users
- B. uniform unsubscription management interface for end users
- C. cloud-based unsubscribe service
- D. integrated graymail scanning engine
- E. improved mail efficacy
Answer: C,D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01101.pdf (p.2)
NEW QUESTION 69
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?
- A. Export the SLBL to a .csv file.
- B. Debug the mail flow policy.
- C. Monitor Incoming/Outgoing Listener.
- D. Show the SLBL cache on the CLI.
Answer: A
Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117922-technote- esa-00.html
NEW QUESTION 70
......
Official Study Course for Final Test
If you intend to clear 300-720 exam, you need to prepare adequately for it. There is no better way to pass an exam than to use the recommended study course and understand the different concepts that will be tested in the test. The official training for exam 300-720 is ‘Securing Email with Cisco Email Security Appliance (SESA) v3.1’. This is the class that will teach you how to secure Emails with the Cisco ESA. In particular, the technology helps you to keep your Emails safe from phishing, compromises from external factors, and ransomware. It also helps you learn the art of streamlining your email safety policies. Those who ought to enroll and take it include security engineers, security architects, network administrators, operation engineers, network engineers, and network managers. Others are security or network technicians, system designers, and Cisco integrators & partners. With this course, you will grasp the skills needed in implementing, troubleshooting, as well as administering the Cisco ESA. The major capabilities include advanced protection targeting malware, protection using anti-virus, spam blocking, outbreak filtering, quarantines, encryption, and preventing data loss. You will take a few days to complete this course, regardless of which option you choose from the list below:
- Four days of tutor-guided learning within a classroom set up as well as practicing with lab-based tasks;
- Four days of learning with guidance from a virtual instructor with practical lessons;
- Four days of e-learning, equivalent to the four days of lessons from an instructor, including videos, hands-on tasks, and challenges.
Once you take this class, you will learn the skills you need to use highly available email protection in defending your organization’s email systems against threats that change rapidly. You will also earn the in-demand enterprise security skills and get 24 CE credits that will come in handy during recertification.
Prerequisites for 300-720 Course
For you to gain the best from the training, it is advisable to have at least one of the following technical abilities at the minimum:
- A completion letter from Cisco Networking Academy (CCNA 1 or CCNA 2)
- Expertise in Windows (Including MCSA, MCSE), and CompTIA (A+, Server+, Network+).
- Industry designations relevant to the course, such as (ISC)2, EC Council, CompTIA Security+, ISACA, and GIAC;
- A Cisco certificate (Cisco CCENT or higher);
Verified Pass 300-720 Exam in First Attempt Guaranteed: https://www.passtorrent.com/300-720-latest-torrent.html
Free 300-720 Sample Questions and 100% Cover Real Exam Questions : https://drive.google.com/open?id=17tQDeqlkzp8Y6iYtcYUuV0syEyhD9VcF