300-720Updated 1d ago · Sep 4, 2026
Securing Email with Cisco Email Security Appliance (300-720 SESA)
214 questions across 1 topics, with suggested answers, explanations where available, and imported community discussion. The first 21 questions are free to preview.
Topics
| # | Topic | Questions | Free |
|---|---|---|---|
| 1 | Email Authentication and Encryption | 214 | 21 |
Preview
21 of 214 accessibleQuestion 1 · Email Authentication and Encryption Open
Email encryption is configured on a Cisco ESA using CRES. What action is taken for a message when CRES is unavailable?
Answer: A
Cisco ESA retains the message in its queue and retries encryption when the Cisco Registered Envelope Service is unavailable, up to the configured maximum time that a message may remain queued awaiting encryption. Only after that timeout can encryption failure handling notify the sender.
**Learn more:** [Configure Security Levels in the ESA CRES](https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/216083-configure-security-levels-in-the-esa-cre.pdf)
Question 2 · Spam Control with Talos SenderBase and Antispam Open
Which two Cisco Email Security features can be added to a Sender Group to protect an organization from email threats? (Choose two.)
Answer: B, D
Cisco Email Security Sender Groups can use geolocation to classify or reject email servers by country, and they can use Cisco SenderBase Reputation Scores to apply policies based on a sender’s reputation. These controls operate at the sender/connection level to filter unwanted email traffic.
**Learn more:** [Cisco: Blacklist and reject an email server based on geolocation](https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/212175-How-do-I-blacklist-and-reject-an-email-s.html) · [Cisco: Sender Reputation Filtering](https://www.cisco.com/c/en/us/td/docs/security/ces/user_guide/esa_user_guide_13-0/b_ESA_Admin_Guide_ces_13-0/b_ESA_Admin_Guide_chapter_0101.html)
Question 3 · Spam Control with Talos SenderBase and Antispam Open
Which process is bypassed when an email arrives from **safedomain.com**, which is on the safelist?
Answer: D
Cisco Secure Email Gateway evaluates the safelist immediately before anti-spam scanning. Messages from a safelisted sender skip anti-spam scanning but continue through antivirus scanning and other configured email-pipeline processing.
**Learn more:** [Cisco Secure Email Gateway User Guide — Spam Quarantine](https://www.cisco.com/c/en/us/td/docs/security/esa/esa16-0-3/user_guide/b_ESA_Admin_Guide_16-0-3/b_ESA_Admin_Guide_12_1_chapter_0100000.html) · [Cisco: Allow a Trusted Sender to Bypass Anti-Spam](https://www.cisco.com/c/en/us/support/docs/security/secure-email-gateway/217140-how-do-you-whitelist-a-trusted-sender.html)