Cisco Cisco Web Security Appliance S170 Guía Del Usuario
14-7
AsyncOS 8.7 for Cisco Web Security Appliances User Guide
Chapter 14 File Reputation Filtering and File Analysis
File Reputation and File Analysis Reporting and Tracking
You will receive alerts when:
Related Topics
•
•
Configuring Centralized Reporting for Advanced Malware Protection Features
If you will centralize reporting on a Security Management appliance, see important configuration
requirements in the Advanced Malware Protection sections in the web reporting chapter of the online
help or user guide for your management appliance.
requirements in the Advanced Malware Protection sections in the web reporting chapter of the online
help or user guide for your management appliance.
File Reputation and File Analysis Reporting and Tracking
•
•
•
•
Identifying Files by SHA-256 Hash
Because filenames can easily be changed, the appliance generates an identifier for each file using a
Secure Hash Algorithm (SHA-256). If an appliance processes the same file with different names, all
instances are recognized as the same SHA-256. If multiple appliances process the same file, all instances
of the file have the same SHA-256 identifier.
Secure Hash Algorithm (SHA-256). If an appliance processes the same file with different names, all
instances are recognized as the same SHA-256. If multiple appliances process the same file, all instances
of the file have the same SHA-256 identifier.
Alert Description
Type
Severity
Feature keys expire
(As is standard for all features)
The file reputation or file analysis service is unreachable.
Anti-Malware
Warning
Communication with cloud services is established.
Anti-Malware
Info
A file reputation verdict changes.
Anti-Malware
Info
File types that can be sent for analysis have changed. You
may want to enable upload of new file types.
may want to enable upload of new file types.
Anti-Malware
Info
Analysis of some file types is temporarily unavailable.
Anti-Malware
Warning
Analysis of all supported file types is restored after a
temporary outage.
temporary outage.
Anti-Malware
Info