exam questions

Exam 350-701 All Questions

View all questions & answers for the 350-701 exam

Exam 350-701 topic 1 question 212 discussion

Actual exam question from Cisco's 350-701
Question #: 212
Topic #: 1
[All 350-701 Questions]

A Cisco ESA administrator has been tasked with configuring the Cisco ESA to ensure there are no viruses before quarantined emails are delivered. In addition, delivery of mail from known bad mail servers must be prevented. Which two actions must be taken in order to meet these requirements? (Choose two.)

  • A. Deploy the Cisco ESA in the DMZ.
  • B. Use outbreak filters from SenderBase.
  • C. Configure a recipient access table.
  • D. Enable a message tracking service.
  • E. Scan quarantined emails using AntiVirus signatures.
Show Suggested Answer Hide Answer
Suggested Answer: BE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Basuso
5 months, 2 weeks ago
Selected Answer: BE
Guys, Recipient Table Address (RAT) is where you define which recipients can receive emails, not from where emails will be received from, that's on HAT. But since there isn't a HAT option then the closest thing for "known bad mail servers" is through Outbreak Filters which uses TALOS Global Threat Inteligence.
upvoted 1 times
...
ff001
2 years, 9 months ago
Cisco ESA uses a multilayer approach to fight viruses and malware: • The first layer of defense consists of outbreak filters, which the appliance downloads from Cisco SenderBase. They contain a list of known bad mail servers. These filters are generated by watching global email traffic patterns and looking for anomalies associated with an outbreak. When an email is received from a server on this list, it is kept in quarantine until the antivirus signatures are updated to counter the current threat. • The second layer of defense is using antivirus signatures to scan quarantined emails, to ensure that they do not carry viruses into the network. • Cisco ESA also scans outbound emails to provide antivirus protection.
upvoted 4 times
...
surforlife
2 years, 9 months ago
"B and E" Cisco ESA uses a multilayer approach to fight viruses and malware: • The first layer of defense consists of outbreak filters, which the appliance downloads from Cisco SenderBase. They contain a list of known bad mail servers. These filters are generated by watching global email traffic patterns and looking for anomalies associated with an outbreak. When an email is received from a server on this list, it is kept in quarantine until the antivirus signatures are updated to counter the current threat. • The second layer of defense is using antivirus signatures to scan quarantined emails, to ensure that they do not carry viruses into the network. • Cisco ESA also scans outbound emails to provide antivirus protection.
upvoted 1 times
...
nomanlands
2 years, 9 months ago
Selected Answer: BE
BE - C wouldn't stop known bad senders.
upvoted 1 times
...
semi1750
3 years ago
Selected Answer: BE
Picked B & E Page 6 stated as follow Fighting Viruses and Malware Cisco ESA uses a multilayer approach to fight viruses and malware: • The first layer of defense consists of outbreak filters, which the appliance downloads from Cisco SenderBase. They contain a list of known bad mail servers. These filters are generated by watching global email traffic patterns and looking for anomalies associated with an outbreak. When an email is received from a server on this list, it is kept in quarantine until the antivirus signatures are updated to counter the current threat. • The second layer of defense is using antivirus signatures to scan quarantined emails, to ensure that they do not carry viruses into the network. • Cisco ESA also scans outbound emails to provide antivirus protection https://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Aug2013/CVD-EmailSecurityUsingCiscoESADesignGuide-AUG13.pdf
upvoted 1 times
...
Pupu
3 years, 2 months ago
Selected Answer: BE
I'm going with B and E. B: https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-0/user_guide/b_ESA_Admin_Guide_13-0/b_ESA_Admin_Guide_12_1_chapter_0101.html E: https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-0/user_guide/b_ESA_Admin_Guide_13-0/b_ESA_Admin_Guide_12_1_chapter_01101.html
upvoted 3 times
...
Cock
3 years, 2 months ago
Selected Answer: CE
The answer cannot be A. Either single-armed deployment or dual-armed deployment, Cisco ESA is separate from DMZ. ESA is connected to DMZ, not in the DMZ. B is not correct as well. What is outbreak filter? An outbreak occurs when messages with attachments containing never-before-seen viruses or variants of existing viruses spread quickly through private networks and the Internet. The question does not specify to new virus. C is correct. Recipient access table (RAT) acceptance or rejection of recipient addresses. E is correct.
upvoted 1 times
...
NullNull88
3 years, 5 months ago
"delivery of mail from known bad mail servers must be prevented" that isn't C. RAT?
upvoted 2 times
...
MoII
3 years, 5 months ago
Agree with A and B
upvoted 1 times
MoII
3 years, 5 months ago
Sorry I meant B and E
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago