nerdexam
Cisco

700-280 · Question #64

Which two options are default characteristics of the RSA DLP feature? (Choose two.)

The correct answer is A. It is not enabled on the Cisco ESA. D. It requires a feature key. On the Cisco Email Security Appliance (ESA), the RSA DLP feature is not enabled by default (A) and requires a feature key to activate (D) - meaning it's an add-on that must be licensed and explicitly turned on, not a ready-to-use built-in. Why the distractors are wrong: B - SSL…

Implement and Configure Cisco Email Security Appliances

Question

Which two options are default characteristics of the RSA DLP feature? (Choose two.)

Options

  • AIt is not enabled on the Cisco ESA.
  • BIt requires an SSL certificate to be enabled.
  • CIt cannot be disabled without the admin password.
  • DIt requires a feature key.
  • EIt is a built-in feature, and it is enabled by default.

How the community answered

(18 responses)
  • A
    89% (16)
  • B
    6% (1)
  • C
    6% (1)

Explanation

On the Cisco Email Security Appliance (ESA), the RSA DLP feature is not enabled by default (A) and requires a feature key to activate (D) - meaning it's an add-on that must be licensed and explicitly turned on, not a ready-to-use built-in.

Why the distractors are wrong:

  • B - SSL certificates are unrelated to enabling RSA DLP; this conflates it with other security features.
  • C - There's no special admin-password lock on disabling DLP; standard admin access is sufficient.
  • E - This is the direct opposite of the truth: RSA DLP is neither built-in nor enabled by default on the ESA.

Memory tip: Think of RSA DLP as a "premium add-on" - like a paid app on your phone. It won't appear or work until you buy it (feature key = D) and download it (enable it = A). If it were just "built-in and on," Cisco couldn't charge separately for it.

Topics

#RSA DLP#Default Configuration#Feature Licensing#Cisco ESA

Community Discussion

No community discussion yet for this question.

Full 700-280 Practice