更新された2023年11月19日 300-720試験問題集でPDF問題とテストエンジン
最新(2023)Cisco 300-720試験問題集
Cisco 300-720(Cisco Email Security Applianceによるメールのセキュリティ保護)認定試験は、メール通信のセキュリティ保護に関する知識やスキルを向上させたい専門家を対象としています。この試験は、スパムとウイルスの保護、メールの暗号化と復号化、およびメールコンテンツのフィルタリングなど、メールセキュリティに関連する幅広いトピックをカバーしています。この試験に合格することにより、候補者はCisco Email Security Applianceを使用してメールセキュリティソリューションを実装および管理する能力を証明することができます。
認定試験に備えて、候補者はCiscoが提供する様々なリソースを活用することができます。これにはトレーニングコース、学習ガイド、練習試験が含まれます。候補者は、実際のメールセキュリティとCiscoメールセキュリティアプライアンスの経験を生かして、試験に備えることもできます。
質問 # 56
Which two service problems can the Cisco Email Security Appliance solve? (Choose two.)
- A. URL filtering
- B. IPS
- C. DLP
- D. Antispam
正解:C、D
質問 # 57
Which two options describe the expected results when centralized policy, virus, and outbreak quarantines are disabled on the Cisco Email Security Appliance? (Choose two.)
- A. The Cisco ESA must be rebooted.
- B. The quarantine process must be restarted.
- C. Local quarantines are enabled automatically.
- D. New messages sent to the quarantine are immediately sent to local quarantines
- E. The Cisco ESA stops accepting new messages.
正解:C、D
質問 # 58
How does the graymail safe unsubscribe feature function?
- A. It checks the reputation of the URI and performs the unsubscribe process on behalf of the end user.
- B. It checks the URI reputation and category and allows the content filter to take an action on it.
- C. It redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe.
- D. It strips the malicious content of the URI before unsubscribing.
正解:A
解説:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/200383- Graymail-Detection-and-Safe-Unsubscribin.html
質問 # 59
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level." What is the cause of this error?
- A. DLP is not configured on host1.
- B. DLP is configured at the domain-level on esa1.
- C. Content filters are configured at the machine-level on esa1.
- D. DLP is configured at the cluster-level on esa2.
正解:A
解説:
Explanation/Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118026-technote- esa-00.html
質問 # 60
Refer to the exhibit. Which SPF record is valid for mycompany.com?
- A. v=spf1 a mx ip4:172.16.18.230 -all
- B. v=spf1 a mx ip4:199.209.31.21 -all
- C. v=spf1 a mx ip4:199.209.31.2 -all
- D. v=spf1 a mx ip4:10.1.10.23 -all
正解:B
質問 # 61
What is the order of virus scanning when multilayer antivirus scanning is configured?
- A. The default engine scans for viruses first and the McAfee engine scans for viruses second.
- B. The Sophos engine scans for viruses first and the McAfee engine scans for viruses second.
- C. The McAfee engine scans for viruses first and the default engine scans for viruses second.
- D. The McAfee engine scans for viruses first and the Sophos engine scans for viruses second.
正解:D
解説:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01011.html According to the User Guide for AsyncOS 12.0 for Cisco Email Security Appliances2, the order of virus scanning when multilayer antivirus scanning is configured is as follows:
The McAfee engine scans the message first. If the McAfee engine detects a virus, the message is dropped or repaired, depending on the configuration. If the McAfee engine does not detect a virus, the message is passed to the next layer of scanning.
The Sophos engine scans the message second. If the Sophos engine detects a virus, the message is dropped or repaired, depending on the configuration. If the Sophos engine does not detect a virus, the message is delivered to the recipient.
質問 # 62
An engineer is testing mail flow on a new Cisco ESA and notices that messages for domain abc.com are stuck in the delivery queue. Upon further investigation, the engineer notices that the messages pending delivery are destined for 192.168.1.11, when they should instead be routed to 192.168.1.10.
What configuration change needed to address this issue?
- A. Modify Destination Controls entry for the domain abc.com.
- B. Add an address list for domain abc.com.
- C. Modify the SMTP route for the domain and change the IP address to 192.168.1.10.
- D. Modify the Routing Tables and add a route for IP address to 192.168.1.10.
正解:C
解説:
Reference:
You can use the SMTP route feature on Cisco ESA to specify how messages for a specific domain are routed to their destination. You can modify the SMTP route for the domain abc.com and change the IP address to 192.168.1.10 to ensure that messages are delivered correctly3. Reference = Securing Email with Cisco Email Security Appliance (SESA) v3.1
質問 # 63
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)
- A. Enable outbreak filters.
- B. Enable antispam scanning.
- C. Enable email relay.
- D. Enable port bouncing.
- E. Enable antivirus scanning.
正解:A、B
解説:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_chapter_01111.html
質問 # 64
Which two components must be configured to perform DLP scanning? (Choose two.)
- A. Add a DLP policy to the Outgoing Content Filter.
- B. Add a DLP policy on the Incoming Mail Policy.
- C. Enable a DLP policy on the Outgoing Mail Policy.
- D. Add a DLP policy to the DLP Policy Manager.
- E. Enable a DLP policy on the DLP Policy Customizations.
正解:C、D
解説:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa11-1/user_guide/ b_ESA_Admin_Guide_11_1/b_ESA_Admin_Guide_chapter_010001.html
質問 # 65
Which two steps configure Forged Email Detection? (Choose two.)
- A. Configure a filter to use the Forged Email Detection rule and dictionary.
- B. Enable Forged Email Detection on the Security Services page.
- C. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
- D. Configure a content dictionary with friendly names.
- E. Configure a content dictionary with executive email addresses.
正解:A、E
解説:
Explanation/Reference: https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11
質問 # 66
Which two steps configure Forged Email Detection? (Choose two.)
- A. Configure a filter to use the Forged Email Detection rule and dictionary.
- B. Enable Forged Email Detection on the Security Services page.
- C. Configure a filter to check the Header From value against the Forged Email Detection dictionary.
- D. Configure a content dictionary with friendly names.
- E. Configure a content dictionary with executive email addresses.
正解:A、E
解説:
Reference:
https://explore.cisco.com/esa-feature-enablement/user-guide-for-async-11
質問 # 67
When outbreak filters are configured, which two actions are used to protect users from outbreaks? (Choose two.)
- A. redirect
- B. drop
- C. return
- D. delay
- E. abandon
正解:A、D
質問 # 68
What are organizations trying to address when implementing a SPAM quarantine?
- A. true positives
- B. true negatives
- C. false positives
- D. false negatives
正解:C
解説:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_0100000.html#c on_ 1482874
質問 # 69
Which two query types are available when an LDAP profile is configured? (Choose two.)
- A. group
- B. routing
- C. proxy consolidation
- D. user
- E. recursive
正解:A、B
解説:
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/ b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_011010.html
質問 # 70
Which process is skipped when an email is received from safedomain.com, which is on the safelist?
- A. outbreak filter
- B. antivirus scanning
- C. antispam scanning
- D. message filter
正解:C
解説:

https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.978
https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.123
質問 # 71
What are organizations trying to address when implementing a SPAM quarantine?
- A. true positives
- B. true negatives
- C. false positives
- D. false negatives
正解:C
解説:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa12-0/user_guide/b_ESA_Admin_Guide_12_0/b_ESA_Admin_Guide_12_0_chapter_0100000.html#con_1482874 False positives are legitimate messages that are incorrectly identified as spam by the Cisco ESA. Organizations may want to implement a spam quarantine to reduce the risk of losing false positive messages and allow users or administrators to review and release them2. Reference = User Guide for AsyncOS 12.0 for Cisco Email Security Appliances - GD (General Deployment) - Spam Quarantine [Cisco Secure Email Gateway] - Cisco
質問 # 72
Which component must be added to the content filter to trigger on failed SPF Verification or DKIM Authentication verdicts?
- A. condition
- B. status
- C. parameter
- D. response
正解:A
質問 # 73
An Encryption Profile has been set up on the Cisco ESA.
Drag and drop the steps from the left for creating an outgoing content filter to encrypt emails that contains the subject "Secure:" into the correct order on the right.
正解:
解説:

質問 # 74
Which two statements about configuring message filters within the Cisco ESA are true? (Choose two.)
- A. The filterconfig command executed from the CLI is used to configure message filters.
- B. Message filters can be configured only from the web user interface.
- C. Message filters can be configured only from the CLI.
- D. The filters command executed from the CLI is used to configure the message filters.
- E. Message filters configuration within the web user interface is located within Incoming Content Filters.
正解:C、D
質問 # 75
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)
- A. Enable outbreak filters.
- B. Enable antispam scanning.
- C. Enable email relay.
- D. Enable port bouncing.
- E. Enable antivirus scanning.
正解:A、B
質問 # 76
What is the order of virus scanning when multilayer antivirus scanning is configured?
- A. The default engine scans for viruses first and the McAfee engine scans for viruses second.
- B. The Sophos engine scans for viruses first and the McAfee engine scans for viruses second.
- C. The McAfee engine scans for viruses first and the default engine scans for viruses second.
- D. The McAfee engine scans for viruses first and the Sophos engine scans for viruses second.
正解:D
解説:
https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-
0/user_guide/b_ESA_Admin_Guide_13-0.pdf P.402
質問 # 77
......
更新された検証済みの合格させる300-720試験にはリアル問題と解答:https://www.goshiken.com/Cisco/300-720-mondaishu.html
最適な練習法にはCisco 300-720試験の素晴らしい300-720試験問題PDF:https://drive.google.com/open?id=1UIUHSUeB29HaRXsQijZQr6URxZIBFtSj