[Q14-Q30] Use Real 300-720 - 100% Cover Real Exam Questions [Jul-2021]

Share

Use Real 300-720 - 100% Cover Real Exam Questions [Jul-2021] 

Dumps Brief Outline Of The 300-720 Exam - Test4Engine

NEW QUESTION 14
Which type of attack is prevented by configuring file reputation filtering and file analysis features?

  • A. backscatter
  • B. zero-day
  • C. phishing
  • D. denial of service

Answer: B

 

NEW QUESTION 15
Which two are configured in the DMARC verification profile? (Choose two.)

  • A. name of the verification profile
  • B. message action to take when the policy is reject/quarantine
  • C. minimum number of signatures to verify
  • D. message action into an incoming or outgoing content filter
  • E. ESA listeners to use the verification profile

Answer: A,B

 

NEW QUESTION 16
Which attack is mitigated by using Bounce Verification?

  • A. denial of service
  • B. eavesdropping
  • C. smurf
  • D. spoof

Answer: A

Explanation:
Reference:
https://www.networkworld.com/article/2305394/ironport-adds-bounce-back-verification-for-e- mail.html

 

NEW QUESTION 17
How does the graymail safe unsubscribe feature function?

  • A. It checks the reputation of the URI and performs the unsubscribe process on behalf of the end user.
  • B. It redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe.
  • C. It checks the URI reputation and category and allows the content filter to take an action on it.
  • D. It strips the malicious content of the URI before unsubscribing.

Answer: A

Explanation:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/200383-Graymail- Detection-and-Safe-Unsubscribin.html

 

NEW QUESTION 18
Which two steps configure Forged Email Detection? (Choose two.)

  • A. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
  • B. Configure a content dictionary with executive email addresses.
  • C. Configure a content dictionary with friendly names.
  • D. Configure a filter to use the Forged Email Detection rule and dictionary.
  • E. Enable Forged Email Detection on the Security Services page.

Answer: B,D

Explanation:
Explanation/Reference: https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11

 

NEW QUESTION 19
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?

  • A. data loss prevention
  • B. antivirus
  • C. quarantine threat level
  • D. antispam

Answer: D

 

NEW QUESTION 20
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA.
Which outgoing mail policy feature should be configured to catch this content before it leaves the network?

  • A. data loss prevention
  • B. file analysis
  • C. file reputation filtering
  • D. outbreak filtering

Answer: D

 

NEW QUESTION 21
What is a benefit of implementing URL filtering on the Cisco ESA?

  • A. blacklists spam
  • B. removes threats from malicious URLs
  • C. enhances reputation against malicious URLs
  • D. provides URL reputation protection

Answer: D

 

NEW QUESTION 22
A Cisco ESA administrator was notified that a user was not receiving emails from a specific domain. After reviewing the mail logs, the sender had a negative sender-based reputation score.
What should the administrator do to allow inbound email from that specific domain?

  • A. Create a new inbound mail policy with a message filter that overrides Talos.
  • B. Add the domain into the allow list.
  • C. Ask the user to add the sender to the email application's allow list.
  • D. Modify the firewall to allow emails from the domain.

Answer: B

 

NEW QUESTION 23
Which two steps are needed to disable local spam quarantine before external quarantine is enabled? (Choose two.)

  • A. Select External Spam Quarantine and click on Configure.
  • B. Uncheck the Enable Spam Quarantine check box.
  • C. Check the External Safelist/Blocklist check box.
  • D. Select Security Services and click Spam Quarantine.
  • E. Select Monitor and click Spam Quarantine.

Answer: B,E

 

NEW QUESTION 24
What is a valid content filter action?

  • A. decrypt on delivery
  • B. skip antispam
  • C. quarantine
  • D. archive

Answer: C

 

NEW QUESTION 25
DRAG DROP
Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.
Select and Place:

Answer:

Explanation:

Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/b_ESA_Admin_Guide_11_1/ b_ESA_Admin_Guide_11_1_chapter_010101.html

 

NEW QUESTION 26
To comply with a recent audit, an engineer must configure anti-virus message handling options on the incoming mail policies to attach warnings to the subject of an email.
What should be configured to meet this requirement for known viral emails?

  • A. Encrypted Messages
  • B. Positively Identified Messages
  • C. Virus Infected Messages
    B Unscannable Messages

Answer: B

 

NEW QUESTION 27
What must be configured to allow the Cisco ESA to encrypt an email using the Cisco Registered Envelope Service?

  • A. message encryption from the mail flow policies with "CRES" selected
  • B. message encryption from a content filter that select "Message Encryption" over TLS
  • C. provisioned email encryption profile
  • D. content filter to forward the email to the Cisco Registered Envelope server

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_010010.html

 

NEW QUESTION 28
Which action must be taken before a custom quarantine that is being used can be deleted?

  • A. Delete only the unused quarantine.
  • B. Remove the quarantine from the message action of a filter.
  • C. Delete the quarantine that is not assigned to a filter.
  • D. Delete the quarantine that is assigned to a filter.

Answer: B

 

NEW QUESTION 29
Which two Cisco ESA features are used to control email delivery based on the sender? (Choose two.)

  • A. spam quarantine
  • B. blocklists
  • C. safelists
  • D. incoming mail policies
  • E. outbreak filter

Answer: B,C

 

NEW QUESTION 30
......

Certification Training for 300-720 Exam Dumps Test Engine: https://www.test4engine.com/300-720_exam-latest-braindumps.html

300-720 Training & Certification Get Latest CCNP Security : https://drive.google.com/open?id=1T-1KG3mjgVTrQI4V0CtJeyiwAQ2bUTKO