Pre-Summer Special Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: spcl70

Practice Free 300-720 Securing Email with Cisco Email Security Appliance (300-720 SESA) Exam Questions Answers With Explanation

We at Crack4sure are committed to giving students who are preparing for the Cisco 300-720 Exam the most current and reliable questions . To help people study, we've made some of our Securing Email with Cisco Email Security Appliance (300-720 SESA) exam materials available for free to everyone. You can take the Free 300-720 Practice Test as many times as you want. The answers to the practice questions are given, and each answer is explained.

Question # 6

An engineer must enable encryption on a Cisco Secure Email Gateway. The maximum size of each message must be 20 MB. Drag and drop the actions from the left into sequence on the right to meet the requirement.

300-720 question answer

Question # 7

What is the purpose of Cisco Email Encryption on Cisco ESA?

A.

to ensure anonymity between a recipient and MTA

B.

to ensure integrity between a sender and MTA

C.

to aut henticate direct communication between a sender and Cisco ESA

D.

to ensure privacy between Cisco ESA and MTA

Question # 8

300-720 question answer

Refer to the exhibit. A security engineer must create a message filter on a Cisco Secure Email Gateway to scan all incoming emails for encrypted PDF files. Which code snippet completes the message filter?

A.

attachment

B.

attachment-binary-include

C.

attachment-binary-contains

D.

attachment-binary-file

Question # 9

Which of the following two statements are correct about the large file attachments (greater than 25MB) feature in Cisco Secure Email Encryption Service? (Choose two.)

A.

Large file attachments can only be sent using the websafe portal

B.

This feature allows users to send up to 50MB of attachments in a secure email.

C.

Large file attachments will be sent as a securedoc attachment

D.

Large file attachments can only be sent using the Cisco Secure Email Add-In.

E.

This feature can only be enabled if the Read from Message feature is enabled

Question # 10

A Cisco Secure Email Gateway appliance is processing many messages that are sent to invalid recipients verification. Which two steps are required to accomplish this task? (Choose two.)

A.

Enable external LDAP authentication

B.

Configure the LDAP query on a listener

C.

Configure LDAP server profiles

D.

Enable LDAP authentication on a listener

E.

Configure incoming mail policy to query LDAP server

Question # 11

A network administrator notices that there are a high number of queries to the LDAP server. The mail logs show an entry “550 Too many invalid recipients | Connection closed by foreign host.”

Which feature must be used to address this?

A.

DHAP

B.

SBRS

C.

LDAP

D.

SMTP

Question # 12

300-720 question answer

Refer to the exhibit. A security engineer must configure a Cisco Secure Email Gateway to ensure that encryption is enabled and the configured profile is provisioned. Which command must be used?

A.

setup

B.

check encryption

C.

provision

D.

profiles

Question # 13

What is a capability of content filters?

A.

to review messages based on email subject

B.

to scan incoming or outgoing messages

C.

to apply rules before message filters

D.

to perform antispam scanning

Question # 14

Which two components form the graymail management solution in Cisco ESA? (Choose two.)

A.

cloud-based unsubscribe service

B.

uniform unsubscription management interface for end users

C.

secure subscribe option for end users

D.

integrated graymail scanning engine

E.

improved mail efficacy

Question # 15

Refer to the exhibit.

300-720 question answer

300-720 question answer

Which configuration allows the Cisco Secure Email Gateway to scan for executables inside the archive file and apply the action as per the content filter?

A.

Configure the recursion depth to a higher value.

B.

Modify the content filter to look for attachment filetype of compressed.

C.

Configure the maximum attachment size to a higher value.

D.

Modify the content filter to look for exe filename instead of executable filetype.

Question # 16

Which scenario prevents a message from being sent to the quarantine as an action in the scan behavior on Cisco ESA?

A.

A policy quarantine is missing.

B.

More than one email pipeline is defined.

C.

The " modify the message subject " is already set.

D.

The " add custom header " action is performed first.

Question # 17

When outbreak filters are configured, which two actions are used to protect users from outbreaks? (Choose two.)

A.

redirect

B.

return

C.

drop

D.

delay

E.

abandon

Question # 18

The company security policy requires that the finance department have an easy way to apply encryption to their outbound messages that contain sensitive data Users must be able to flag the messages that require encryption versus a Cisco Secure Email Gateway appliance scanning all messages and automatically encrypting via detection Which action enables this capability?

A.

Create an encryption profile with [SECURE] in the Subject setting and enable encryption on the mail flow policy

B.

Create an outgoing content filter with no conditions and with the Encrypt and Deliver Now action configured with [SECURE] in the Subject setting

C.

Create an encryption profile and an outgoing content filter that includes \[SECURE\] within the Subject Header: Contains condition along with the Encrypt and Deliver Now action

D.

Create a DLP policy manager message action with encryption enabled and apply it to active DLP policies for outgoing mail.

Question # 19

When URL logging is configured on a Cisco ESA, which feature must be enabled first?

A.

antivirus

B.

antispam

C.

virus outbreak filter

D.

senderbase reputation filter

Question # 20

Drag and drop the actions from the left into sequence on the right to validate the authenticity of email on a Cisco Secure Email Gateway by using DNS records.

300-720 question answer

Question # 21

300-720 question answer

Refer to the exhibit. An engineer is trying to connect to a Cisco E SA using SSH and has been unsuccessful. Upon further inspection, the engineer notices that there is a loss of connectivity to the neighboring switch.

Which connection method should be used to determine the configuration issue?

A.

Telnet

B.

HTTPS

C.

Ethernet

D.

serial

Question # 22

Which two actions are configured on the Cisco ESA to query LDAP servers? (Choose two.)

A.

accept

B.

relay

C.

delay

D.

route

E.

reject

Question # 23

An engineer is tasked with creating a content filter to catch attachments, including credit card numbers, and hold them for review until further action is taken. Which component on a Cisco Secure Email Gateway must be configured to meet this requirement?

A.

Spam Quarantine

B.

Policy Quarantine

C.

Outbreak Filter

D.

Content Filter

Question # 24

When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)

A.

DKIM

B.

Public Keys

C.

Domain Keys

D.

Symmetric Keys

E.

Private Keys

Question # 25

Drag and drop the Cisco ESA reactions to a possible DLP from the left onto the correct action types on the right.

300-720 question answer

Question # 26

An administrator is trying to enable centralized PVO but receives the error, " Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level. "

What is the cause of this error?

A.

Content filters are configured at the machine-level on esa1.

B.

DLP is configured at the cluster-level on esa2.

C.

DLP is configured at the domain-level on esa1.

D.

DLP is not configured on host1.

Question # 27

A network engineer must tighten up the SPAM control policy of an organization due to a recent SPAM attack. In which scenario does enabling regional scanning improve security for this organization?

A.

when most of the received spam comes from a specific country

B.

when most of the received spam originates outside of the U.S.

C.

when most of the received email originates outside of the U.S.

D.

when most of the received email originates from a specific region

Question # 28

What is the order of virus scanning when multilayer antivirus scanning is configured?

A.

The default engine scans for viruses first and the McAfee engine scans for viruses second.

B.

The Sophos engine scans for viruses first and the McAfee engine scans for viruses second.

C.

The McAfee engine scans for viruses first and the default engine scans for viruses second.

D.

The McAfee engine scans for viruses first and the Sophos engine scans for viruses second.

Question # 29

The security administrator wants to configure alerts on Cisco Secure Email Gateway for outbreak filters. Which two actions must be taken to meet the requirement? (Choose two.)

A.

From Outbreak Filters Global Settings, enable the alerts for the outbreak filters.

B.

Enable the alerts for the outbreak filters by using an Adaptive Rule.

C.

From Mail Policies, configure the Outbreak Filters settings.

D.

From System Administration enable message splintering.

E.

From Security Services, configure the Outbreak Filters settings.

Question # 30

Refer to the exhibit.

300-720 question answer

Which additional configuration action must be taken to protect against Directory Harvest Attacks?

A.

When LDAP Queries are configured, Directory Harvest Attack Prevention is enabled by default.

B.

In the LDAP Server profile, configure Directory Harvest Attack Prevention

C.

In the mail flow policy, configure Directory Harvest Attack Prevention.

D.

In the Listener Settings, modify the LDAP Queries configuration to use the Work Queue

Question # 31

What is a category for classifying graymail?

A.

Malicious

B.

Marketing

C.

Spam

D.

Priority

Question # 32

An engineer must configure a local spam quarantine in Cisco Secure Email Gateway These configurations were already performed: •Enable the Anti-Spam feature and configure the quarantine settings •Specify the disk space to allocate to the spam quarantine.

Which two actions must be taken to complete the configuration? (Choose two.)

A.

Configure a mail policy.

B.

Enable Outbreak Filters.

C.

Set the quarantine threshold to 3

D.

Allow browser access

E.

Activate Outgoing Content Filters.

Question # 33

Which two Cisco ESA features are used to control email delivery based on the sender? (Choose two.)

A.

incoming mail policies

B.

spam quarantine

C.

outbreak filter

D.

safelists

E.

blocklists

Question # 34

A trusted partner of an organization recently experienced a new campaign that was leveraging JavaScript attachments to trick users into executing malware. As a result, they created a local policy to deny messages with JavaScript attachments. Which action should the administrator of the organization take to ensure encrypted communications are delivered to the intended partner recipient?

A.

Insert the X-PostX-Use-Script ' header with a value of false to the encrypted messages

B.

Select JavaScript-free ' option within the Cisco Secure Email Encryption Service Add-in

C.

Create an outgoing content filter and add the Encrypt and Deliver Nov/ action with Use-Script option deselected

D.

Create a new encryption profile and deselect the ' Use-Script ' envelope settings option.

Question # 35

Which two factors must be considered when message filter processing is configured? (Choose two.)

A.

message-filter order

B.

lateral processing

C.

structure of the combined packet

D.

mail policies

E.

MIME structure of the message

Question # 36

Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?

A.

quarantine threat level

B.

antispam

C.

data loss prevention

D.

antivirus

Question # 37

Which type of attack does Bounce Verification fight against?

A.

identity

B.

backscatter

C.

phishing

D.

spear phishing

Question # 38

Drag and drop the actions from the left into the sequence on the right to configure directory harvest prevention in Cisco Secure Email Gateway.

300-720 question answer

Question # 39

An engineer is tasked with reviewing mail logs to confirm that messages sent from domain abc.com are passing SPF verification and being accepted by the Cisco ESA. The engineer notices that SPF veri fication is not being performed and that SPF is not being referenced in the logs for messages sent from domain abc.com.

Why is the verification not working properly?

A.

SPF verification is disabled in the Recipient Access Table.

B.

SPF verification i s disabled on the Mail Flow Policy.

C.

The SPF conformance level is set to SIDF compatible on the Mail Flow Policy.

D.

An SPF verification Content Filter has not been created.

Question # 40

Drag and drop the AsyncOS methods for performing DMARC verification from the left into the correct order on the right.

300-720 question answer

Question # 41

What is the default method of remotely accessing a newly deployed Cisco Secure Email Virtual Gateway when a DHCP server is not available?

A.

Manual configuration of an IP address is required through the serial port before remote access

B.

DHCP is required for the initial IP address assignment

C.

Use the IP address of 192.168 42 42 via the Management port

D.

Manual configuration of an IP address is required through the hypervisor console before remote access

Question # 42

An engineer wants to ensure that emails received by company users that contain URLs do not make them susceptible to data loss from accessing malicious or undesired external content sources Which two features must be configured on Cisco Secure Email Gateway to meet this requirement1? (Choose two.)

A.

antispam scanning

B.

data loss prevention

C.

graymail detection

D.

URL filtering

E.

antivirus scanning

Question # 43

Which two configurations are used on multiple LDAP servers to connect with Cisco ESA? (Choose two.)

A.

load balancing

B.

SLA monitor

C.

active-standby

D.

failover

E.

active-active

Question # 44

What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)

A.

Enable outbreak filters.

B.

Enable email relay.

C.

Enable antispam scanning.

D.

Enable port bouncing.

E.

Enable antivirus scanning.

Question # 45

An Encryption Profile has been set up on the Cisco ESA.

Drag and drop the steps from the left for creating an outgoing content filter to encrypt emails that contains the subject " Secure: " into the correct order on the right.

300-720 question answer

Question # 46

An administrator must ensure that emails sent from cisco_123@externally.com are routed through an alternate virtual gateway. Drag and drop the snippet from the bottom onto the blank in the graphic to finish the message filter syntax. Not all snippets are used.

300-720 question answer

Question # 47

What are two phases of the Cisco ESA email pipeline? (Choose two.)

A.

reject

B.

workqueue

C.

action

D.

delivery

E.

quarantine

Question # 48

Refer to the exhibit.

300-720 question answer

A network engineer must set up a content filter to find any messages that failed SPF and send them into quarantine The content filter has been set up and enabled, but all messages except those that have failed SPF are being sent into quarantine. Which section of the filter must be modified to correct this behavior?

A.

skip-filters

B.

log-entry

C.

spf-status

D.

quarantine

Question # 49

Which two steps are needed to disable local spam quarantine before external quarantine is enabled? (Choose two.)

A.

Uncheck the Enable Spam Quarantine check box.

B.

Select Monitor and click Spam Quarantine.

C.

Check the External Safelist/Blocklist check box.

D.

Select External Spam Quarantine and click on Configure.

E.

Select Security Services and click Spam Quarantine.

Question # 50

A Cisco ESA administrator has noticed that new messages being sent to the Centralized Policy Quarantine are being released after one hour. Previously, they were being held for a day before being released.

What was configured that caused this to occur?

A.

The retention period was changed to one hour.

B.

The threshold settings were set to override the clock se ttings.

C.

The retention period was set to default.

D.

The threshold settings were set to default.

Question # 51

An engineer must share threat reporting information from Cisco Secure Email Gateway to Cisco SecureX. Which setting must be enabled in Secure Email Gateway?

A.

SNMP

B.

Security Services Exchange

C.

Cloud Service Settings

D.

System Monitor

Question # 52

Which setting affects the aggressiveness of spam detection?

A.

protection level

B.

spam threshold

C.

spam timeout

D.

maximum depth of recursion scan

Question # 53

Which action is allowed while managing list of certificate authorities on Cisco Secure Email Gateway?

A.

Export the list to the xml file.

B.

Remove the preinstalled list.

C.

Accept the selected certificate list.

D.

Enable the system list.

Question # 54

An engineer must enable SIDF for a mail flow policy on an incoming listener in Cisco Secure Email Gateway. Drag and drop the actions from the left into the sequence on the right to meet the requirement.

300-720 question answer

Question # 55

A recent engine update was pulled down for graymail and has caused the service to start crashing. It is critical to fix this as quickly as possible.

What must be done to address this issue?

A.

Roll back to a previous version of the engine from the Services Overview page.

B.

Roll back to a previous version of the engine from the System Health page.

C.

Download another update from the IMS and Graymail page.

D.

Download another update from the Service Updat es page.

Question # 56

A company has deployed a new mandate that requires all emails sent externally from the Sales Department to be scanned by DLP for PCI-DSS compliance. A new DLP policy has been created on the Cisco ESA and needs to be assigned to a mail policy named ‘Sales’ that has yet to be create d.

Which mail policy should be created to accomplish this task?

A.

Outgoing Mail Policy

B.

Preliminary Mail Policy

C.

Incoming Mail Flow Policy

D.

Outgoing Mail Flow Policy

Question # 57

What is needed to sign outbound emails using Domain Keys Identified Mail after a signing profile is created in the Cisco Secure Email Gateway?

A.

Configure in destination controls.

B.

Enable DKIM in an outbound content filter.

C.

Enable DKIM in the mail flow policy.

D.

A signing profile referencing the sender domain is sufficient.

300-720 PDF

$42

$139.99

3 Months Free Update

  • Printable Format
  • Value of Money
  • 100% Pass Assurance
  • Verified Answers
  • Researched by Industry Experts
  • Based on Real Exams Scenarios
  • 100% Real Questions

300-720 PDF + Testing Engine

$57

$189.99

3 Months Free Update

  • Exam Name: Securing Email with Cisco Email Security Appliance (300-720 SESA)
  • Last Update: May 26, 2026
  • Questions and Answers: 190
  • Free Real Questions Demo
  • Recommended by Industry Experts
  • Best Economical Package
  • Immediate Access

300-720 Engine

$48

$159.99

3 Months Free Update

  • Best Testing Engine
  • One Click installation
  • Recommended by Teachers
  • Easy to use
  • 3 Modes of Learning
  • State of Art Technology
  • 100% Real Questions included