300-720 Exam Details

  • Exam Code
    :300-720
  • Exam Name
    :Securing Email with Cisco Email Security Appliance (SESA)
  • Certification
    :CCNP Security
  • Vendor
    :Cisco
  • Total Questions
    :248 Q&As
  • Last Updated
    :Jul 11, 2026

Cisco 300-720 Online Questions & Answers

  • Question 51:

    Which Cisco ESA security service is configured only through an outgoing mail policy?

    A. antivirus
    B. DLP
    C. Outbreak Filters
    D. AMP

  • Question 52:

    Which components are required when encrypting SMTP with TLS on Cisco ESA when the sender requires TLS verification?

    A. self-signed certificate in PKCS#7 format
    B. X.509 certificate and matching private key from a CA
    C. self-signed certificate in PKCS#12 format
    D. DER certificate and matching public key from a CA

  • Question 53:

    An engineer must configure Directory Harvest Attack Prevention for SMTP in Cisco Secure Email Gateway. This error message must be sent when the listener receives more than 50 invalid recipients per hour:

    1. 500 - Too many requests

    2. Max. Invalid Recipients Per Hour was set to 50 already. two.)

    Which two actions must be taken next to set maximum invalid recipients per hour to meet the requirement? (Choose

    A. Apply Max. Recipients Per Hour Text to 500 - Too many requests.
    B. Configure Max. Recipients Per Hour Code to 500.
    C. Implement Max. Recipients Per Hour Text to 500 - Too many requests.
    D. Create Max. Recipients Per Hour Code to 500.
    E. Set Max. Recipients Per Hour Text to Too many requests.

  • Question 54:

    A company security policy requires that the finance department have an easy way to apply encryption to their outbound messages that contain sensitive data. Users must be able to flag the messages that require encryption versus a Cisco ESA scanning all messages and automatically encrypting via detection. Which action enables this capability?

    A. Create an outgoing content filter with no conditions and with the Encrypt and Deliver Now action configured with [SECURE] in the Subject setting.
    B. Create a DLP policy manager message action with encryption enabled and apply it to active DLP policies for outgoing mail.
    C. Create an encryption profile with [SECURE] in the Subject setting and enable encryption on the mail flow policy.
    D. Create an encryption profile and an outgoing content filter that includes \[SECURE\] within the Subject Header: Contains condition along with the Encrypt and Deliver Now action.

  • Question 55:

    Spammers routinely try to send emails with the recipient field filled with a list of all possible combinations of letters and numbers. These combinations, appended with a company's domain name are malicious attempts at learning all possible valid email addresses. Which action must be taken on a Cisco ESA to prevent this from occurring?

    A. Quarantine external authentication queries.
    B. Enable end user safelist features.
    C. Perform LDAP acceptance validation.
    D. Select the SMTP Authentication Query checkbox.

  • Question 56:

    Which scenario prevents a message from being sent to the quarantine as an action in the scan behavior on Cisco ESA?

    A. A policy quarantine is missing.
    B. More than one email pipeline is defined.
    C. The "modify the message subject" is already set.
    D. The "add custom header" action is performed first.

  • Question 57:

    Which content filter condition checks to see if the "From: header" in the message is similar to any of the users in the content dictionary?

    A. SPF Verification
    B. Duplicate Boundaries Verification
    C. Forged Email Detection
    D. Subject Header

  • Question 58:

    A network administrator has enabled virus scanning with the Sophos antivirus engine and set the "drop infected mail" option on a Cisco ESA; however, end users are still complaining about the large number of phishing emails they receive. What must be done to resolve this problem?

    A. Configure Reputation Filtering
    B. Configure Content Filtering
    C. Configure Outbreak Filtering
    D. Change the antivirus engine to McAfee.

  • Question 59:

    An engineer must configure a mail policy for all incoming email that contains a Microsoft Excel attachment. All such email must be quarantined without any exception.

    After the incoming mail policy is created, which action must be taken next to meet the requirement?

    A. Set the quarantine threat level threshold to 1.
    B. Create an incoming content filter to match required attachments.
    C. Configure the Outgoing Content Filters settings.
    D. Set the quarantine threat level threshold to 5.

  • Question 60:

    DRAG DROP

    Drag and drop the steps to configure Cisco ESA to use SPF/SIDF verification from the left into the correct order on the right.

    Select and Place:

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-720 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.