Valid CCNP Security 300-720 Dumps Ensure Your Passing [Q22-Q45]

Share

Valid CCNP Security 300-720 Dumps Ensure Your Passing

300-720 Dumps Real Exam Questions Test Engine Dumps Training


Cisco 300-720 certification exam is designed to test the candidate's knowledge and skills in securing email with Cisco Email Security Appliance. Securing Email with Cisco Email Security Appliance certification exam is an essential requirement for IT professionals who are responsible for securing their organization's email infrastructure against various cyber threats. 300-720 exam evaluates the candidate's ability to implement, configure, and manage the Cisco Email Security Appliance (ESA) to protect their organization's email system.


To earn the Cisco 300-720 certification, candidates must demonstrate a deep understanding of the Cisco Email Security Appliance and its features, such as email filtering, content filtering, data loss prevention, and encryption. They must also be able to configure and troubleshoot the appliance, as well as integrate it with other security solutions and third-party applications.


Cisco 300-720 exam is an important certification for IT professionals who want to specialize in email security. With the increasing number of email threats, it is essential for organizations to have IT professionals who have the necessary skills to secure their email communication. By earning this certification, IT professionals can ensure that they are equipped with the latest knowledge and skills to protect their organization's sensitive data.

 

NEW QUESTION # 22
What are organizations trying to address when implementing a SPAM quarantine?

  • A. false positives
  • B. false negatives
  • C. true negatives
  • D. true positives

Answer: A

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_0100000.html#con_1482874 False positives are legitimate messages that are incorrectly identified as spam by the Cisco ESA. Organizations may want to implement a spam quarantine to reduce the risk of losing false positive messages and allow users or administrators to review and release them2. Reference = User Guide for AsyncOS 12.0 for Cisco Email Security Appliances - GD (General Deployment) - Spam Quarantine [Cisco Secure Email Gateway] - Cisco


NEW QUESTION # 23
Which setting affects the aggressiveness of spam detection?

  • A. protection level
  • B. spam timeout
  • C. spam threshold
  • D. maximum depth of recursion scan

Answer: C

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118220-technote- esa-00.html


NEW QUESTION # 24
Drag and Drop Question
An administrator must ensure that emails sent from [email protected] are routed through an alternate virtual gateway. Drag and drop the snippet from the bottom onto the blank in the graphic to finish the message filter syntax. Not all snippets are used.

Answer:

Explanation:


NEW QUESTION # 25
Which SMTP extension does Cisco ESA support for email security?

  • A. STARTTLS
  • B. UTF8SMTP
  • C. PIPELINING
  • D. ETRN

Answer: A

Explanation:
STARTTLS is an SMTP extension that allows email servers to negotiate a secure connection using TLS or SSL encryption. Cisco ESA supports STARTTLS for both inbound and outbound email delivery.


NEW QUESTION # 26
A recent engine update was pulled down for graymail and has caused the service to start crashing. It is critical to fix this as quickly as possible.
What must be done to address this issue?

  • A. Download another update from the Service Updates page.
  • B. Roll back to a previous version of the engine from the Services Overview page.
  • C. Roll back to a previous version of the engine from the System Health page.
  • D. Download another update from the IMS and Graymail page.

Answer: B


NEW QUESTION # 27
Email encryption is configured on a Cisco ESA that uses CRES.
Which action is taken on a message when CRES is unavailable?

  • A. It is sent in clear text.
  • B. It is requeued.
  • C. It is encrypted by a Cisco encryption appliance.
  • D. It is dropped and an error message is sent to the sender.

Answer: B

Explanation:
When CRES (Cisco Registered Envelope Service) is unavailable, Cisco ESA will requeue the message and attempt to resend it later, until the maximum number of retries or the maximum age of the message is reached. The message will not be sent in clear text, dropped, or encrypted by another appliance.


NEW QUESTION # 28
When the Cisco ESA is configured to perform antivirus scanning, what is the default timeout value?

  • A. 30 seconds
  • B. 120 seconds
  • C. 90 seconds
  • D. 60 seconds

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01011.html


NEW QUESTION # 29
An organization wants to use DMARC to improve its brand reputation by leveraging DNS records.
Which two email authentication mechanisms are utilized during this process? (Choose two.)

  • A. DKIM
  • B. TLS
  • C. DSTP
  • D. PKI
  • E. SPF

Answer: A,E

Explanation:
https://www.cisco.com/c/en/us/products/security/what-is-dmarc.html


NEW QUESTION # 30
Which two factors must be considered when message filter processing is configured? (Choose two.)

  • A. MIME structure of the message
  • B. message-filter order
  • C. mail policies
  • D. lateral processing
  • E. structure of the combined packet

Answer: A,B

Explanation:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01000.html


NEW QUESTION # 31
Which cloud service provides a reputation verdict for email messages based on the sender domain and other attributes?

  • A. Cisco AppDynamics
  • B. Cisco Secure Cloud Analytics
  • C. Cisco Talos
  • D. Cisco Secure Email Threat Defense

Answer: C

Explanation:
Cisco Talos is a cloud service that provides a reputation verdict for email messages based on the sender domain and other attributes such as IP address, sender behavior, message content, and attachment analysis. Cisco Talos is integrated with Cisco Secure Email Gateway and provides real-time threat intelligence and protection against spam, phishing, malware, and other email-borne threats.
The other options are not valid because:
A) Cisco AppDynamics is a cloud service that provides application performance monitoring and optimization for enterprise applications. It does not provide reputation verdicts for email messages.
B) Cisco Secure Email Threat Defense is a cloud service that provides visibility and remediation capabilities for email threats detected by Cisco Secure Email Gateway. It does not provide reputation verdicts for email messages.
C) Cisco Secure Cloud Analytics is a cloud service that provides network visibility and threat detection for cloud environments. It does not provide reputation verdicts for email messages.


NEW QUESTION # 32
An administrator needs to configure Cisco ESA to ensure that emails are sent and authorized by the owner of the domain. Which two steps must be performed to accomplish this task? (Choose two.)

  • A. Create Mx record.
  • B. Enable SPF verification.
  • C. Create DMARC profile.
  • D. Generate keys.
  • E. Create signing profile.

Answer: B,C


NEW QUESTION # 33
Refer to the exhibit.

What results from this filter configuration?

  • A. Action is applied to all mail from [email protected].
  • B. Action is skipping all antispam checks for the mail.
  • C. Action is applied to all mail that has the subject "FW: Bounce Notification."
  • D. Action is skipping all antivirus checks for the mail

Answer: D


NEW QUESTION # 34
Which two query types are available when an LDAP profile is configured? (Choose two.)

  • A. recursive
  • B. user
  • C. routing
  • D. proxy consolidation
  • E. group

Answer: B,C

Explanation:
User and routing are two query types that are available when an LDAP profile is configured on Cisco ESA. User queries are used to validate end-user credentials, such as for Spam Quarantine End-User Authentication or SMTP Authentication. Routing queries are used to determine the destination mail server for a recipient, such as for Mail Flow Policies or Delivery Methods.


NEW QUESTION # 35
Refer to the exhibit.


Which configuration allows the Cisco Secure Email Gateway to scan for executables inside the archive file and apply the action as per the content filter?

  • A. Modify the content filter to look for attachment filetype of compressed.
  • B. Modify the content filter to look for exe filename instead of executable filetype.
  • C. Configure the recursion depth to a higher value.
  • D. Configure the maximum attachment size to a higher value.

Answer: C

Explanation:
The recursion depth is the number of levels that the Cisco Secure Email Gateway will scan inside an archive file for executables and other file types. If the recursion depth is too low, some executables may not be detected and scanned by the content filter. To allow the appliance to scan for executables inside the archive file and apply the action as per the content filter, you need to configure the recursion depth to a higher value1. Reference = User Guide for AsyncOS 12.0 for Cisco Email Security Appliances - GD (General Deployment) - Configuring File Reputation Filtering and File Analysis [Cisco Secure Email Gateway] - Cisco


NEW QUESTION # 36
An organization wants to designate help desk personnel to assist with tickets that request the release of messages from the spam quarantine because company policy does not permit direct end-user access to the quarantine. Which two roles must be used to allow help desk personnel to release messages while restricting their access to make configuration changes in the Cisco Secure Email Gateway? (Choose two.)

  • A. Quarantine Administrator
  • B. Administrator
  • C. Read-Only Operator
  • D. Technician
  • E. Help Desk User

Answer: A,E

Explanation:
All users with administrator privileges can change spam quarantine settings and view and manage messages in the spam quarantine. You do not need to configure spam quarantine access for administrator users.
If you configure access to the spam quarantine for users with the following roles, they can view, release, and delete messages in the spam quarantine:
-Operator
-Read-only operator
-Help desk user
-Guest
-Custom user roles that have spam quarantine privileges
These users cannot access spam quarantine settings.
https://www.cisco.com/c/en/us/td/docs/security/esa/esa14-0/user_guide/b_ESA_Admin_Guide_14-0/b_ESA_Admin_Guide_12_1_chapter_0100000.html?bookSearch=true#con_1624156


NEW QUESTION # 37
Which two are configured in the DMARC verification profile? (Choose two.)

  • A. ESA listeners to use the verification profile
  • B. minimum number of signatures to verify
  • C. message action into an incoming or outgoing content filter
  • D. name of the verification profile
  • E. message action to take when the policy is reject/quarantine

Answer: D,E

Explanation:
A DMARC verification profile is a list of parameters that the mail flow policies of the appliance use for verifying DMARC. The name of the verification profile identifies the profile and allows you to apply it to different mail flow policies. The message action to take when the policy is reject/quarantine determines how the appliance handles messages that fail DMARC verification based on the sender's DMARC policy.


NEW QUESTION # 38
Spammers routinely try to send emails with the recipient field filled with a list of all possible combinations of letters and numbers. These combinations, appended with a company domain name are malicious attempts at learning all possible valid email addresses. Which action must be taken on a Cisco Secure Email Gateway to prevent this from occurring?

  • A. Perform LDAP acceptance validation.
  • B. Quarantine external authentication queries.
  • C. Select the SMTP Authentication Query checkbox
  • D. Enable end user safelist features

Answer: A

Explanation:
LDAP acceptance validation is a feature that allows the Cisco Secure Email Gateway to check if the recipient address of an incoming message exists in an LDAP directory before accepting it. This feature can help prevent spammers from sending emails with invalid recipient addresses and reduce the load on the appliance2. Reference = User Guide for AsyncOS 12.0 for Cisco Email Security Appliances - GD (General Deployment) - Configuring LDAP Queries [Cisco Secure Email Gateway] - Cisco


NEW QUESTION # 39
Which two configurations are used on multiple LDAP servers to connect with Cisco ESA? (Choose two.)

  • A. active-standby
  • B. load balancing
  • C. failover
  • D. SLA monitor
  • E. active-active

Answer: B,C

Explanation:
You can enter multiple host names to configure the LDAP servers for failover or load-balancing. Separate multiple entries with commas.
Reference: https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/sma_user_guide/ b_SMA_Admin_Guide_ces_11/b_SMA_Admin_Guide_chapter_01010.html


NEW QUESTION # 40
Which action on the Cisco ESA provides direct access to view the safelist/blocklist?

  • A. Monitor Incoming/Outgoing Listener.
  • B. Show the SLBL cache on the CLI.
  • C. Debug the mail flow policy.
  • D. Export the SLBL to a .csv file.

Answer: D

Explanation:
The safelist/blocklist (SLBL) is a feature that allows Cisco ESA to accept or reject messages from specific email addresses or domains, based on the configuration of mail flow policies or end user preferences.
The action that provides direct access to view the SLBL on Cisco ESA is to export the SLBL to a .csv file, which can be done from the web user interface by selecting Security Services > Safelist/Blocklist and clicking Export.
The other options do not provide direct access to view the SLBL on Cisco ESA.


NEW QUESTION # 41
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?

  • A. DLP is configured at the domain-level on esa1.
  • B. DLP is configured at the cluster-level on esa2.
  • C. Content filters are configured at the machine-level on esa1.
  • D. DLP is not configured on host1.

Answer: C

Explanation:

https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/200083-Requirements-for-the-PVO-Migration-Wizar.html


NEW QUESTION # 42
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?

  • A. DLP is configured at the domain-level on esa1.
  • B. DLP is configured at the cluster-level on esa2.
  • C. DLP is not configured on host1.
  • D. Content filters are configured at the machine-level on esa1.

Answer: C

Explanation:
The PVO cannot be enabled and shows this type of error message.
Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as host1 and host2 in Cluster have content filters / DLP actions available at a level different from the cluster Level.
The error message can indicate that one of the hosts does not have a DLP feature key applied and DLP is disabled. The solution is to add the missing feature key and apply DLP settings identical as on the host that has the feature key applied. This feature key inconsistency might have the same effect with Outbreak Filters, Sophos Antivirus, and other feature keys.
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118026-technote-esa-00.html


NEW QUESTION # 43
Which components are required when encrypting SMTP with TLS on a Cisco Secure Email Gateway appliance when the sender requires TLS verification?

  • A. self-signed certificate in PKCS#7 format
  • B. self-signed certificate in PKCS#12 format
  • C. DER certificate and matching public key from a CA
  • D. X. 509 certificate and matching private key from a CA

Answer: D

Explanation:
To encrypt SMTP with TLS on a Cisco Secure Email Gateway appliance when the sender requires TLS verification, the components that are required are an X.509 certificate and matching private key from a CA. The certificate must be signed by a trusted CA and contain the domain name or IP address of the listener in the Subject or Subject Alternative Name fields. The private key must be unencrypted and match the certificate. Reference: [Cisco Secure Email Gateway Administrator Guide - Configuring TLS]


NEW QUESTION # 44
Which two configurations are used on multiple LDAP servers to connect with Cisco ESA? (Choose two.)

  • A. active-standby
  • B. load balancing
  • C. failover
  • D. SLA monitor
  • E. active-active

Answer: B,C

Explanation:
You can enter multiple host names to configure the LDAP servers for failover or load-balancing. Separate multiple entries with commas.
Reference:
https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/sma_user_guide/ b_SMA_Admin_Guide_ces_11/b_SMA_Admin_Guide_chapter_01010.html


NEW QUESTION # 45
......

Cisco 300-720: Selling CCNP Security Products and Solutions: https://guidetorrent.dumpstorrent.com/300-720-exam-prep.html