nerdexam
Cisco

300-720 · Question #180

An engineer must configure Cisco Secure Email Gateway to scan all email from the HR department for viruses. The McAfee scanning engine must be used, and a log entry must be added for messages that…

The correct answer is A. Set the virus scanning timeout value to 45 seconds. C. From the Message Scanning settings, add an X-IronPort-AV Header. Two additional steps are needed after enabling antivirus scanning and creating the HR policy. First, the virus scanning timeout must be set to 45 seconds (A) - this controls how long the McAfee engine is allowed to attempt scanning before a message is classified as Unscannable…

Cisco ESA Spam Control and Anti-Malware

Question

An engineer must configure Cisco Secure Email Gateway to scan all email from the HR department for viruses. The McAfee scanning engine must be used, and a log entry must be added for messages that are marked Unscannable after a timeout of 45 seconds. These configurations were performed already:

  • Enable antivirus scanning on the email gateway.
  • Create a mail policy for the HR department.

Which two actions must be taken next to meet the requirement? (Choose two.)

Options

  • ASet the virus scanning timeout value to 45 seconds.
  • BFrom the Message Scanning settings, enable the dropping of attachments.
  • CFrom the Message Scanning settings, add an X-IronPort-AV Header.
  • DFrom the Message Handling settings, enable Encrypted Message Handling.
  • ESet the antivirus update timeout value to 45 seconds.

How the community answered

(37 responses)
  • A
    70% (26)
  • B
    5% (2)
  • D
    16% (6)
  • E
    8% (3)

Explanation

Two additional steps are needed after enabling antivirus scanning and creating the HR policy. First, the virus scanning timeout must be set to 45 seconds (A) - this controls how long the McAfee engine is allowed to attempt scanning before a message is classified as Unscannable due to timeout. Second, enabling the X-IronPort-AV header (C) from Message Scanning settings adds a header to each scanned message recording the antivirus scan result, including an Unscannable designation when applicable - this header serves as the per-message log entry required. Option B (drop attachments) is not required and too aggressive. Option D (Encrypted Message Handling) applies to encrypted messages, not timeout-related unscannable ones. Option E confuses antivirus update timeout with scanning timeout - these are separate values.

Topics

#Email Security Gateway#Antivirus Scanning#Mail Policies#Message Scanning

Community Discussion

No community discussion yet for this question.

Full 300-720 Practice