DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Free Cisco 300-720 SESA Practice Questions 2026 Part3

Are you preparing for the Cisco 300-720 certification exam? SPOTO offers the Cisco 300-720 Premium File; all questions are aligned with the latest exam content and come with expert-provided answers. Our question banks cover the latest question types, core concepts, and detailed explanations, helping you familiarize yourself with the exam format and difficulty level. Whether you are reviewing core concepts or simulating a real exam environment, these resources will rapidly boost your confidence and readiness.
For over two decades, SPOTO has successfully helped numerous IT professionals secure their ideal positions at Fortune 500 companies. Download now to start practicing efficiently and ensure a high score on the actual exam. Don't miss this opportunity to pass your certification exam with ease!
Take other online exams

Question #1
When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)
A. DKIM
B. Public Keys
C. Domain Keys
D. Symmetric Keys
E. Private Keys
View answer
Correct Answer: BE

View The Updated 300-720 Exam Questions

SPOTO Provides 100% Real 300-720 Exam Questions for You to Pass Your 300-720 Exam!

Question #2
Which type of query must be configured when setting up the Spam Quarantine while merging notifications?
A. Spam Quarantine Alias Routing Query
B. Spam Quarantine Alias Consolidation Query
C. Spam Quarantine Alias Authentication Query
D. Spam Quarantine Alias Masquerading Query
E. Reveal Answer
View answer
Correct Answer: B
Question #3
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #4
To comply with a recent audit, an engineer must configure anti-virus message handling options on the incoming mail policies to attach warnings to the subject of an email. What should be configured to meet this requirement for known viral emails?
A. Virus Infected Messages
B. Unscannable Messages
C. Encrypted Messages
D. Positively Identified Messages
View answer
Correct Answer: C
Question #5
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #6
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #7
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #8
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #9
Which two configurations are used on multiple LDAP servers to connect with Cisco ESA? (Choose two.)
A. oad balancing
B. LA monitor
C. ctive-standby
D. ailover
E. ctive-active
View answer
Correct Answer: AD
Question #10
Which action must be taken before a custom quarantine that is being used can be deleted?
A. Delete the quarantine that is assigned to a filter
B. Delete the quarantine that is not assigned to a filter
C. Delete only the unused quarantine
D. Remove the quarantine from the message action of a filter
E. Reveal Answer
View answer
Correct Answer: D
Question #11
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?
A. nabling the End-User Safelist/Blocklist feature
B. pam Quarantine External Authentication Query
C. pam Quarantine End-User Authentication Query
D. pam Quarantine Alias Consolidation Query
View answer
Correct Answer: C
Question #12
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #13
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #14
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choose two.)
A. Enable outbreak filters
B. Enable email relay
C. Enable antispam scanning
D. Enable port bouncing
E. Enable antivirus scanning
View answer
Correct Answer: AC
Question #15
Which action is a valid fallback when a client certificate is unavailable during SMTP authentication on Cisco ESA?
A. LDAP Query
B. SMTP AUTH
C. SMTP TLS
D. LDAP BIND
View answer
Correct Answer: B
Question #16
An analyst creates a new content dictionary to use with Forged Email Detection.Which entry will be added into the dictionary?
A. mycompany
B. Alpha Beta
C. ^Alpha\ Beta$
D. Alpha
View answer
Correct Answer: B
Question #17
Which suboption must be selected when LDAP is configured for Spam Quarantine End-UserAuthentication?
A. esignate as the active query
B. pdate Frequency
C. erver Priority
D. ntity ID
View answer
Correct Answer: A
Question #18
Which setting affects the aggressiveness of spam detection?
A. protection level
B. spam threshold
C. spam timeout
D. maximum depth of recursion scan
View answer
Correct Answer: B
Question #19
What is the maximum message size that can be configured for encryption on the Cisco ESA?
A. 0 MB
B. 5 MB
C. 5 MB
D. 0 MB
View answer
Correct Answer: B
Question #20
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #21
Which two statements about configuring message filters within the Cisco ESA are true? (Choose two.)
A. AThe filters command executed from the CLI is used to configure the message filters
B. BMessage filters configuration within the web user interface is located within Incoming Content Filters
C. CThe filterconfig command executed from the CLI is used to configure message filters
D. DMessage filters can be configured only from the CLI
E. EMessage filters can be configured only from the web user interface
View answer
Correct Answer: AD
Question #22
Which feature must be configured before an administrator can use the outbreak filter for nonviral threats?
A. uarantine threat level
B. ntispam
C. ata loss prevention
D. ntivirus
View answer
Correct Answer: B
Question #23
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #24
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #25
What is a capability of content filters?
A. o scan incoming or outgoing messages
B. o review messages based on email subject
C. o perform antispam scanning
D. o apply rules before message filters
View answer
Correct Answer: A
Question #26
Which type of attack does Bounce Verification fight against?
A. spear phishing
B. backscatter
C. phishing
D. identity
View answer
Correct Answer: B
Question #27
Which method enables an engineer to deliver a flagged message to a specific virtual gateway address in the most flexible way?
A. et up the interface group with the flag
B. ssue the altsrchost command
C. ap the envelope sender address to the host
D. pply a filter on the message
View answer
Correct Answer: B
Question #28
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #29
An administrator needs to configure a Cisco ESA to block specific domains based on their reputation. Which service within the Cisco ESA should be utilized to accomplish this task?
A. ata Loss Prevention
B. ender Group
C. eceiving SMTP Policy
D. nti-Virus
View answer
Correct Answer: B
Question #30
Which feature utilizes sensor information obtained from Talos intelligence to filter email servers connecting into the Cisco ESA?
A. SenderBase Reputation Filtering
B. Connection Reputation Filtering
C. Talos Reputation Filtering
D. SpamCop Reputation Filtering
View answer
Correct Answer: A
Question #31
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #32
Which attack is mitigated by using Bounce Verification?
A. poof
B. enial of service
C. avesdropping
D. murf
View answer
Correct Answer: B
Question #33
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #34
A Cisco ESA administrator must provide outbound email authenticity and configures a DKIM signing profile to handle this task. What is the next step to allow this organization to use DKIM for their outbound email?
A. onfigure the Trusted Sender Group message authenticity policy
B. xport the DNS TXT record to provide to the DNS registrar
C. mport the DNS record of the service provider into the Cisco ESA
D. nable the DKIM service checker
View answer
Correct Answer: B
Question #35
Refer to the exhibit. A security engineer must configure a Cisco Secure Email Gateway to ensure that encryption is enabled and the configured profile is provisioned. Which command must be used?
A. etup
B. heck encryption
C. rovision
D. rofiles
View answer
Correct Answer: C
Question #36
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #37
Which content filter condition checks to see if the "From: header" in the message is similar to any of the users in the content dictionary?
A. Forged Email Detection
B. SPF Verification
C. Subject Header
D. Duplicate Boundaries Verification
View answer
Correct Answer: A
Question #38
Refer to the exhibit. Refer to the exhibit. An engineer is trying to connect to a Cisco ESA using SSH and has been unsuccessful. Upon further inspection, the engineer notices that there is a loss of connectivity to the neighboring switch. Which connection method should be used to determine the configuration issue?
A. ATelnet
B. BHTTPS
C. CEthernet
D. Dserial
View answer
Correct Answer: D
Question #39
An administrator is trying to enable centralized PVO but receives the error, "Unable to proceed with Centralized Policy, Virus and Outbreak Quarantines configuration as esa1 in Cluster has content filters / DLP actions available at a level different from the cluster level."What is the cause of this error?
A. ontent filters are configured at the machine-level on esa1
B. LP is configured at the cluster-level on esa2
C. LP is configured at the domain-level on esa1
D. LP is not configured on host1
View answer
Correct Answer: D
Question #40
Users have been complaining of a higher volume of emails containing profanity. The network administrator will need to leverage dictionaries and create specific conditions to reduce the number of inappropriate emails.Which two filters should be configured to address this? (Choose two.)
A. message
B. spam
C. VOF
D. sender group
E. content
F. Reveal Answer
View answer
Correct Answer: AE
Question #41
Which Cisco ESA security service is configured only through an outgoing mail policy?
A. ntivirus
B. LP
C. utbreak Filters
D. MP
View answer
Correct Answer: B
Question #42
What are two phases of the Cisco ESA email pipeline? (Choose two.)
A. reject
B. workqueue
C. action
D. delivery
E. quarantine
View answer
Correct Answer: BD
Question #43
Which feature utilizes sensor information obtained from Talos intelligence to filter email servers connecting into the Cisco ESA?
A. SenderBase Reputation Filtering
B. Connection Reputation Filtering
C. Talos Reputation Filtering
D. SpamCop Reputation Filtering
View answer
Correct Answer: A
Question #44
When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)
A. DKIM
B. Public Keys
C. Domain Keys
D. Symmetric Keys
E. Private Keys
View answer
Correct Answer: BE
Question #45
Which action is allowed while managing list of certificate authorities on Cisco Secure Email Gateway?
A. Accept the selected certificate list
B. Remove the preinstalled list
C. Enable the system list
D. Export the list to the xml file
View answer
Correct Answer: C
Question #46
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #47
Which feature utilizes sensor information obtained from Talos intelligence to filter email servers connecting into the Cisco ESA?
A. SenderBase Reputation Filtering
B. Connection Reputation Filtering
C. Talos Reputation Filtering
D. SpamCop Reputation Filtering
View answer
Correct Answer: A
Question #48
When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)
A. DKIM
B. Public Keys
C. Domain Keys
D. Symmetric Keys
E. Private Keys
View answer
Correct Answer: AC
Question #49
What is the default method of remotely accessing a newly deployed Cisco Secure Email Virtual Gateway when a DHCP server is not available?
A. se the IP address of 192
B. HCP is required for the initial IP address assignment
C. anual configuration of an IP address is required through the hypervisor console before remote access
D. anual configuration of an IP address is required through the serial port before remote access
View answer
Correct Answer: A
Question #50
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #51
Refer to the exhibit. Refer to the exhibits. What must be done to enforce end user authentication before accessing quarantine?
A. AEnable SPAM notification and use LDAP for authentication
B. BEnable SPAM Quarantine Notification and add the %quarantine_url% variable
C. CChange the end user quarantine access from None authentication to SAAS
D. DChange the end user quarantine access setting from None authentication to Mailbox
View answer
Correct Answer: D
Question #52
Which SMTP extension does Cisco ESA support for email security?
A. ETRN
B. UTF8SMTP
C. PIPELINING
D. STARTTLS
View answer
Correct Answer: D
Question #53
How does the graymail safe unsubscribe feature function?
A. t redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe
B. t checks the reputation of the URI and performs the unsubscribe process on behalf of the end user
C. t checks the URI reputation and category and allows the content filter to take an action on it
D. t strips the malicious content of the URI before unsubscribing
View answer
Correct Answer: B

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number:
Contact Us