300-720 · Question #155
An engineer deploys a Cisco Secure Email Gateway appliance with default settings in an organization that permits only standard H feature does not work. Which additional action resolves the issue?
The correct answer is E. TP/HTTPS ports outbound and notices that the AMP file reputation. Configuring the outbound firewall rule to permit traffic on port 3237 is the additional action that resolves the issue. AMP file reputation is a feature that allows Cisco ESA to check files attached to messages against a cloud-based database of known malicious files and apply…
Question
An engineer deploys a Cisco Secure Email Gateway appliance with default settings in an organization that permits only standard H feature does not work. Which additional action resolves the issue?
Options
- AConfigure the outbound firewall rule to permit traffic on port 8081
- BEnable the Use HTTP option under Advanced Settings for File Reputation.
- CEnable the Use SSL option under Advanced Settings for File Reputation.
- DConfigure the outbound firewall rule to permit traffic on port 3237
- ETP/HTTPS ports outbound and notices that the AMP file reputation
How the community answered
(42 responses)- A17% (7)
- B2% (1)
- C5% (2)
- D5% (2)
- E71% (30)
Explanation
Configuring the outbound firewall rule to permit traffic on port 3237 is the additional action that resolves the issue. AMP file reputation is a feature that allows Cisco ESA to check files attached to messages against a cloud-based database of known malicious files and apply appropriate actions, such as block, deliver, or quarantine. By default, AMP file reputation uses TCP port 3237 to communicate with the cloud-based database. If this port is blocked by a firewall, AMP file reputation will not work properly. To resolve this issue, the administrator can configure the outbound firewall rule to permit traffic on port 3237
Topics
Community Discussion
No community discussion yet for this question.