Pass the Cisco CCNP Security 300-720 Questions and answers with CertsForce

Viewing page 2 out of 5 pages
Viewing questions 11-20 out of questions
Questions # 11:

An email containing a URL passes through the Cisco ESA that has content filtering disabled for all mail policies. The sender is sampleuser@test1.com, the recipients are testuser1@test2.com, testuser2@test2.com, testuser3@test2.com, and mailer1@test2.com. The subject of the email is Test Document395898847. An administrator wants to add a policy to ensure that the Cisco ESA evaluates the web reputation score before permitting this email.

Which two criteria must be used by the administrator to achieve this? (Choose two.)

Options:

A.

Subject contains Test Document"


B.

Sender matches test1.com


C.

Email body contains a URL


D.

Date and time of email


E.

Email does not match mailer1@test2.com


Expert Solution
Questions # 12:

An organization has a strict policy on URLs embedded in emails. The policy allows visibility into what the URL is but does not allow the user to click it. Which action must be taken to meet the requirements of the security policy?

Options:

A.

Enable the URL quarantine policy


B.

Defang the URL.


C.

Replace the URL with text


D.

Redirect the URL to the Cisco security proxy


Expert Solution
Questions # 13:

What is the default behavior of any listener for TLS communication?

Options:

A.

preferred-verify


B.

off


C.

preferred


D.

required


Expert Solution
Questions # 14:

Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.

Question # 14


Expert Solution
Questions # 15:

What is the default method of remotely accessing a newly deployed Cisco Secure Email Virtual Gateway when a DHCP server is not available?

Options:

A.

Manual configuration of an IP address is required through the serial port before remote access


B.

DHCP is required for the initial IP address assignment


C.

Use the IP address of 192.168 42 42 via the Management port


D.

Manual configuration of an IP address is required through the hypervisor console before remote access


Expert Solution
Questions # 16:

Refer to the exhibit.

Question # 16

What results from this filter configuration?

Options:

A.

Action is skipping all antivirus checks for the mail


B.

Action is applied to all mail that has the subject "FW: Bounce Notification."


C.

Action is applied to all mail from test@cisco.com.


D.

Action is skipping all antispam checks for the mail.


Expert Solution
Questions # 17:

When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)

Options:

A.

DKIM


B.

Public Keys


C.

Domain Keys


D.

Symmetric Keys


E.

Private Keys


Expert Solution
Questions # 18:

Question # 18

Question # 18

Refer to the exhibits. What must be done to enforce end user authentication before accessing quarantine?

Options:

A.

Enable SPAM notification and use LDAP for authentication.


B.

Enable SPAM Quarantine Notification and add the %quarantine_url% variable.


C.

Change the end user quarantine access from None authentication to SAAS.


D.

Change the end user quarantine access setting from None authentication to Mailbox.


Expert Solution
Questions # 19:

Question # 19

Refer to the exhibit. How should this configuration be modified to stop delivering Zero Day malware attacks?

Options:

A.

Change Unscannable Action from Deliver As Is to Quarantine.


B.

Change File Analysis Pending action from Deliver As Is to Quarantine.


C.

Configure mailbox auto-remediation.


D.

Apply Prepend on Modify Message Subject under Malware Attachments.


Expert Solution
Questions # 20:

The CEO sent an email indicating that all emails containing a string of 123ABCDEFGHJ cannot be delivered and must be sent into quarantine for further inspection. Given the requirement, which regular expression should be used to match on that criteria?

Options:

A.

\\D{3}[A-Z]{9}


B.

\d{3}[A-Z]{9}


C.

\W{3}[A-Z]{9}


D.

{3}\d{9}[A-Z]


Expert Solution
Viewing page 2 out of 5 pages
Viewing questions 11-20 out of questions