[Mar-2022 Newly Released] 300-720 Exam Questions For You To Pass [Q17-Q36]

Share

[Mar-2022 Newly Released] 300-720 Exam Questions For You To Pass

Cisco 300-720 Exam: Basic Questions With Answers


What is the Exam Pattern for Cisco 300-720 Exam

Format: Multiple choices, multiple answers

  • Length of Exam: 90 minutes
  • Number of questions: 65-75
  • Passing score: 70%
  • Language: English, Japanese

 

NEW QUESTION 17
Which attack is mitigated by using Bounce Verification?

  • A. smurf
  • B. spoof
  • C. eavesdropping
  • D. denial of service

Answer: D

Explanation:
Explanation/Reference: https://www.networkworld.com/article/2305394/ironport-adds-bounce-back-verification-for-e- mail.html

 

NEW QUESTION 18
Which global setting is configured under Cisco ESA Scan Behavior?

  • A. actions for unscannable messages due to attachment type
  • B. minimum attachment size to scan
  • C. attachment scanning timeout
  • D. minimum depth of attachment recursion to scan

Answer: C

Explanation:
Reference:
https://community.cisco.com/t5/email-security/cisco-ironport-esa-security-services-scan-behavior- impact-on-av/td-p/3923243

 

NEW QUESTION 19
Which scenario prevents a message from being sent to the quarantine as an action in the scan behavior on Cisco ESA?

  • A. The "modify the message subject" is already set.
  • B. The "add custom header" action is performed first.
  • C. A policy quarantine is missing.
  • D. More than one email pipeline is defined.

Answer: D

 

NEW QUESTION 20
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?

  • A. quarantine threat level
  • B. data loss prevention
  • C. antispam
  • D. antivirus

Answer: C

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01110.html

 

NEW QUESTION 21
Refer to the exhibit.

Which SPF record is valid for mycompany.com?

  • A. v=spf1 a mx ip4:199.209.31.21 -all
  • B. v=spf1 a mx ip4:172.16.18.230 -all
  • C. v=spf1 a mx ip4:199.209.31.2 -all
  • D. v=spf1 a mx ip4:10.1.10.23 -all

Answer: B

 

NEW QUESTION 22
What is the order of virus scanning when multilayer antivirus scanning is configured?

  • A. The McAfee engine scans for viruses first and the default engine scans for viruses second.
  • B. The McAfee engine scans for viruses first and the Sophos engine scans for viruses second.
  • C. The Sophos engine scans for viruses first and the McAfee engine scans for viruses second.
  • D. The default engine scans for viruses first and the McAfee engine scans for viruses second.

Answer: A

Explanation:
Explanation
If you configure multi-layer anti-virus scanning, the Cisco appliance performs virus scanning with the McAfee engine first and the Sophos engine second. It scans messages using both engines, unless the McAfee engine detects a virus. If the McAfee engine detects a virus, the Cisco appliance performs the anti-virus actions (repairing, quarantining, etc.) defined for the mail policy.

 

NEW QUESTION 23
Which two steps are needed to disable local spam quarantine before external quarantine is enabled?
(Choose two.)

  • A. Select Monitor and click Spam Quarantine.
  • B. Select External Spam Quarantine and click on Configure.
  • C. Uncheck the Enable Spam Quarantine check box.
  • D. Check the External Safelist/Blocklist check box.
  • E. Select Security Services and click Spam Quarantine.

Answer: A,C

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118555-qa-esa-
00.html (configuration summary)

 

NEW QUESTION 24
What are two primary components of content filters? (Choose two.)

  • A. conditions
  • B. policies
  • C. content
  • D. subject
  • E. actions

Answer: A,E

 

NEW QUESTION 25
What is the maximum message size that can be configured for encryption on the Cisco ESA?

  • A. 25 MB
  • B. 20 MB
  • C. 30 MB
  • D. 15 MB

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/117972-technote- esa-00.html

 

NEW QUESTION 26
Which feature utilizes sensor information obtained from Talos intelligence to filter email servers connecting into the Cisco ESA?

  • A. SpamCop Reputation Filtering
  • B. Connection Reputation Filtering
  • C. SenderBase Reputation Filtering
  • D. Talos Reputation Filtering

Answer: C

 

NEW QUESTION 27
Email encryption is configured on a Cisco ESA that uses CRES.
Which action is taken on a message when CRES is unavailable?

  • A. It is dropped and an error message is sent to the sender.
  • B. It is encrypted by a Cisco encryption appliance.
  • C. It is requeued.
  • D. It is sent in clear text.

Answer: D

 

NEW QUESTION 28
DRAG DROP
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Select and Place:

Answer:

Explanation:

Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/ b_ESA_Admin_Guide_11_1_chapter_010101.html

 

NEW QUESTION 29
What must be configured to allow the Cisco ESA to encrypt an email using the Cisco Registered Envelope Service?

  • A. message encryption from the mail flow policies with "CRES" selected
  • B. message encryption from a content filter that select "Message Encryption" over TLS
  • C. content filter to forward the email to the Cisco Registered Envelope server
  • D. provisioned email encryption profile

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_010010.html

 

NEW QUESTION 30
An organization wants to use DMARC to improve its brand reputation by leveraging DNS records.
Which two email authentication mechanisms are utilized during this process? (Choose two.)

  • A. DKIM
  • B. DSTP
  • C. PKI
  • D. TLS

Answer: B,D

 

NEW QUESTION 31
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?

  • A. DLP is configured at the domain-level on esa1.
  • B. Content filters are configured at the machine-level on esa1.
  • C. DLP is configured at the cluster-level on esa2.
  • D. DLP is not configured on host1.

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118026-technote- esa-00.html

 

NEW QUESTION 32
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
  • B. Configure a filter to use the Forged Email Detection rule and dictionary.
  • C. Configure a content dictionary with executive email addresses.
  • D. Configure a content dictionary with friendly names.
  • E. Enable Forged Email Detection on the Security Services page.

Answer: B,C

Explanation:
Reference:
https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11

 

NEW QUESTION 33
What is the purpose of Cisco Email Encryption on Cisco ESA?

  • A. to ensure integrity between a sender and MTA
  • B. to ensure privacy between Cisco ESA and MTA
  • C. to ensure anonymity between a recipient and MTA
  • D. to authenticate direct communication between a sender and Cisco ESA

Answer: B

 

NEW QUESTION 34
Which two certificate authority lists are available in Cisco ESA? (Choose two.)

  • A. default
  • B. custom
  • C. system
  • D. demo
  • E. user

Answer: B,C

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_11_1_chapter_011000.html#task_1194859

 

NEW QUESTION 35
An administrator has created a content filter to quarantine all messages that result in an SPF hardfail to review the messages and determine whether a trusted partner has accidentally misconfigured the DNS settings. The administrator sets the policy quarantine to release the messages after 24 hours, allowing time to review while not interrupting business.
Which additional option should be used to help the end users be aware of the elevated risk of interacting with these messages?

  • A. Modify Subject
  • B. Strip Attachments
  • C. Notify Sender
  • D. Notify Recipient

Answer: A

 

NEW QUESTION 36
......

New 2022 Realistic Free Cisco 300-720 Exam Dump Questions and Answer: https://www.passtorrent.com/300-720-latest-torrent.html

300-720 Practice Test Engine: Try These 92 Exam Questions: https://drive.google.com/open?id=17tQDeqlkzp8Y6iYtcYUuV0syEyhD9VcF