Drag and drop the actions on the left into the sequence on the right to configure directory harvest prevention in Cisco Secure Email Gateway. <DragDrop items={["Configure the listener to use the accept query.","Configure a mail flow policy.","Configure an LDAP server profile.","Enable LDAP acceptance queries."]} slots={[{"answer":"Configure an LDAP server profile.","id":"step1","label":"step 1"},{"answer":"Enable LDAP acceptance queries.","id":"step2","label":"step 2"},{"answer":"Configure the listener to use the accept query.","id":"step3","label":"step 3"},{"answer":"Configure a mail flow policy.","id":"step4","label":"step 4"}]} explanation={"Directory Harvest Attack Prevention using LDAP requires an LDAP server profile and LDAP acceptance query before a listener can use that query. The listener configuration precedes the mail flow policy because the policy’s DHAP settings depend on LDAP acceptance being configured for the associated listener.\n\n**Learn more:** [Cisco Secure Email Gateway LDAP Queries](https://www.cisco.com/c/en/us/td/docs/security/esa/esa16-0-3/user_guide/b_ESA_Admin_Guide_16-0-3/b_ESA_Admin_Guide_12_1_chapter_011011.html)"} reuse={false} />