700-280 · Question #64
Which two options are default characteristics of the RSA DLP feature? (Choose two.)
The correct answer is A. It is not enabled on the Cisco ESA. D. It requires a feature key. On the Cisco Email Security Appliance (ESA), the RSA DLP feature is not enabled by default (A) and requires a feature key to activate (D) - meaning it's an add-on that must be licensed and explicitly turned on, not a ready-to-use built-in. Why the distractors are wrong: B - SSL…
Question
Which two options are default characteristics of the RSA DLP feature? (Choose two.)
Options
- AIt is not enabled on the Cisco ESA.
- BIt requires an SSL certificate to be enabled.
- CIt cannot be disabled without the admin password.
- DIt requires a feature key.
- EIt is a built-in feature, and it is enabled by default.
How the community answered
(18 responses)- A89% (16)
- B6% (1)
- C6% (1)
Explanation
On the Cisco Email Security Appliance (ESA), the RSA DLP feature is not enabled by default (A) and requires a feature key to activate (D) - meaning it's an add-on that must be licensed and explicitly turned on, not a ready-to-use built-in.
Why the distractors are wrong:
- B - SSL certificates are unrelated to enabling RSA DLP; this conflates it with other security features.
- C - There's no special admin-password lock on disabling DLP; standard admin access is sufficient.
- E - This is the direct opposite of the truth: RSA DLP is neither built-in nor enabled by default on the ESA.
Memory tip: Think of RSA DLP as a "premium add-on" - like a paid app on your phone. It won't appear or work until you buy it (feature key = D) and download it (enable it = A). If it were just "built-in and on," Cisco couldn't charge separately for it.
Topics
Community Discussion
No community discussion yet for this question.