300-720 · Question #132
The Cisco ESA is processing many messages that are sent to invalid recipients. To reduce this excessive processing, an engineer is preparing to use LDAP for recipient verification. Which two steps…
The correct answer is A. Configure LDAP server profiles. C. Configure the LDAP query. Directory Harvest Attack Prevention within the SMTP Conversation You can prevent DHAs by entering only domains in the Recipient Access Table (RAT), and performing the LDAP acceptance validation in the SMTP conversation. To drop messages during the SMTP conversation, configure…
Question
The Cisco ESA is processing many messages that are sent to invalid recipients. To reduce this excessive processing, an engineer is preparing to use LDAP for recipient verification. Which two steps are required to accomplish this task? (Choose two.)
Options
- AConfigure LDAP server profiles.
- BEnable external LDAP authentication.
- CConfigure the LDAP query.
- DEnable LDAP authentication on a listener.
- EConfigure incoming mail policy to query LDAP server.
How the community answered
(56 responses)- A82% (46)
- B4% (2)
- D4% (2)
- E11% (6)
Explanation
Directory Harvest Attack Prevention within the SMTP Conversation You can prevent DHAs by entering only domains in the Recipient Access Table (RAT), and performing the LDAP acceptance validation in the SMTP conversation. To drop messages during the SMTP conversation, configure an LDAP server profile for LDAP acceptance. Then, configure the listener to perform an LDAP accept query during the SMTP Once you configure LDAP acceptance queries for the listener, you must configure DHAP settings in the mail flow policy associated with the listener. 0/user_guide/b_ESA_Admin_Guide_14- 0/b_ESA_Admin_Guide_12_1_chapter_011011.html?bookSearch=true#con_1163450
Topics
Community Discussion
No community discussion yet for this question.