Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Pass the Cisco CCNP Security 300-720 Questions and answers with ValidTests

Exam 300-720 All Questions
Exam 300-720 Premium Access

View all detail and faqs for the 300-720 exam

Viewing page 5 out of 6 pages
Viewing questions 41-50 out of questions
Questions # 41:

Question # 41

Refer to the exhibit. An engineer needs to change the existing Forged Email Detection message filter so that it references a newly created dictionary named ‘Executives’.

What should be done to accomplish this task?

Options:

A.

Change "from" to "Executives".

B.

Change "TESF to "Executives".

C.

Change fed' to "Executives".

D.

Change "support" to "Executives".

Expert Solution
Questions # 42:

Which of the following two steps are required to enable Cisco SecureX integration on a Cisco Secure Email Gateway appliance? (Choose two.)

Options:

A.

Paste in the Registration Token generated from the Smart Licensing Account

B.

Enable the Threat Response service under Network>Cloud Service Settings.

C.

Select the correct Threat Response Server based on your region.

D.

Paste in the Registration Token generated from the Security Services Exchange.

E.

Enable the Security Services Exchange service under Network>Cloud Service Settings

Expert Solution
Questions # 43:

Which two Cisco ESA features are used to control email delivery based on the sender? (Choose two.)

Options:

A.

incoming mail policies

B.

spam quarantine

C.

outbreak filter

D.

safelists

E.

blocklists

Expert Solution
Questions # 44:

How does the graymail safe unsubscribe feature function?

Options:

A.

It strips the malicious content of the URI before unsubscribing.

B.

It checks the URI reputation and category and allows the content filter to take an action on it.

C.

It redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe.

D.

It checks the reputation of the URI and performs the unsubscribe process on behalf of the end user.

Expert Solution
Questions # 45:

Question # 45

Refer to the exhibit. An engineer needs to change the existing Forged Email Detection message filter so that it references a newly created dictionary named ‘Executives’.

What should be done to accomplish this task?

Options:

A.

Change " from " to " Executives " .

B.

Change " TESF to " Executives " .

C.

Change fed ' to " Executives " .

D.

Change " support " to " Executives " .

Questions # 46:

An engineer is testing mail flow on a new Cisco ESA and notices that messages for domain abc.com are stuck in the delivery queue. Upon further investigation, the engineer notices that the messages pending delivery are destined for 192.168.1.11, when they should instead be routed to 192.168.1.10.

What configuration change needed to address this issue?

Options:

A.

Add an address list for domain abc.com .

B.

Modify Destination Controls entry for the domain abc.com .

C.

Modify the SMTP route for the domain and change the IP a ddress to 192.168.1.10.

D.

Modify the Routing Tables and add a route for IP address to 192.168.1.10.

Questions # 47:

An organization wants to use DMARC to improve its brand reputation by leveraging DNS records.

Which two email authentica tion mechanisms are utilized during this process? (Choose two.)

Options:

A.

SPF

B.

DSTP

C.

DKIM

D.

TLS

E.

PKI

Questions # 48:

Which two certificate authority lists are available in Cisco ESA? (Choose two.)

Options:

A.

default

B.

system

C.

user

D.

custom

E.

demo

Questions # 49:

An administrator manipulated the subnet mask but was still unable to access the user interface. How must the administrator access the Cisco Secure Email Gateway appliance to perform the initial configuration?

Options:

A.

Use the serial or console port

B.

Use the management port

C.

Use the data 2 port

D.

Use the data 1 port

Questions # 50:

An organization wants to prevent proprietary patent documents from being shared externally via email. The network administrator reviewed the DLP policies on the Cisco Secure Email Gateway and could not find an existing policy with the appropriate matching patterns. Which type of DLP policy template must be used to create a policy that meets this requirement?

Options:

A.

privacy protection

B.

custom policy

C.

regulatory compliance

D.

acceptable use

Viewing page 5 out of 6 pages
Viewing questions 41-50 out of questions