Free 300-720 Exam Braindumps (page: 6)

Page 5 of 38

An analyst creates a new content dictionary to use with Forged Email Detection.

Which entry will be added into the dictionary?

  1. mycompany.com
  2. Alpha Beta
  3. ^Alpha\ Beta$
  4. Alpha.Beta@mycompany.com

Answer(s): B

Explanation:

A content dictionary is a list of words or phrases that can be used to match against message content in Cisco ESA. For Forged Email Detection, a content dictionary can be used to specify the display names of internal senders that should not appear in the From header of external messages. The display name is usually the name of the sender as it appears in the email client, such as Alpha Beta. Therefore, the entry that will be added into the dictionary for this purpose is Alpha Beta.


Reference:

User Guide for AsyncOS 15.0 for Cisco Secure Email Gateway, page 9-8.
https://www.cisco.com/c/en/us/products/collateral/security/email-security-appliance/ whitepaper_C11-737596.html



Which process is skipped when an email is received from safedomain.com, which is on the safelist?

  1. message filter
  2. antivirus scanning
  3. outbreak filter
  4. antispam scanning

Answer(s): D

Explanation:

The safelist is a list of email addresses or domains that are considered legitimate and trustworthy by Cisco ESA. When an email is received from a sender on the safelist, Cisco ESA skips antispam scanning for that message and delivers it to the recipient without any spam filtering.


Reference:

User Guide for AsyncOS 15.0 for Cisco Secure Email Gateway, page 6-13.



Which two query types are available when an LDAP profile is configured? (Choose two.)

  1. proxy consolidation
  2. user
  3. recursive
  4. group
  5. routing

Answer(s): B,E

Explanation:

User and routing are two query types that are available when an LDAP profile is configured on Cisco ESA. User queries are used to validate end-user credentials, such as for Spam Quarantine End-User Authentication or SMTP Authentication. Routing queries are used to determine the destination mail server for a recipient, such as for Mail Flow Policies or Delivery Methods.


Reference:

User Guide for AsyncOS 15.0 for Cisco Secure Email Gateway, page 10-7.



Which action is a valid fallback when a client certificate is unavailable during SMTP authentication on Cisco ESA?

  1. LDAP Query
  2. SMTP AUTH
  3. SMTP TLS
  4. LDAP BIND

Answer(s): B

Explanation:

SMTP AUTH is a valid fallback action when a client certificate is unavailable during SMTP authentication on Cisco ESA. SMTP AUTH is a method of authenticating SMTP clients using username and password credentials, which can be verified by an LDAP server or a local database on Cisco ESA.


Reference:

User Guide for AsyncOS 15.0 for Cisco Secure Email Gateway, page 5-10.
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011011.html






Post your Comments and Discuss Cisco® 300-720 exam with other Community members:

300-720 Discussions & Posts