Cisco Cisco Email Security Appliance X1070 Mode D'Emploi
6-7
Cisco IronPort AsyncOS 7.5 for Email Configuration Guide
OL-25136-01
Chapter 6 Email Security Manager
•
Each message splinter is then processed by anti-spam, anti-virus, DLP
scanning (outgoing messages only), Outbreak Filters, and content filters
independently in the email pipeline.
scanning (outgoing messages only), Outbreak Filters, and content filters
independently in the email pipeline.
pipeline.
Note
Email DLP scanning is only available for outgoing messages.
Table 6-2
Message Splintering in the Email Pipeline
Note
New MIDs (message IDs) are created for each message splinter (for example,
MID 1 becomes MID 2 and MID 3). For more information, see the “Logging”
chapter in the Cisco IronPort AsyncOS for Email Daily Management Guide. In
addition, the trace function shows which policies cause a message to be split.
MID 1 becomes MID 2 and MID 3). For more information, see the “Logging”
chapter in the Cisco IronPort AsyncOS for Email Daily Management Guide. In
addition, the trace function shows which policies cause a message to be split.
W
o
rk Qu
eue
Message Filters
(filters)
↓
message for all recipients
Anti-Spam
(antispamconfig, antispamupdate)
E
m
a
il Secu
rity Ma
na
ger
Sc
an
nin
g
(Per Rec
ipie
n
t)
Messages are splintered immediately after
message filter processing but before
anti-spam processing:
message filter processing but before
anti-spam processing:
message for all recipients
matching policy 1
message for all recipients
matching policy 2
message for all other recipients
(matching the default policy)
Anti-Virus
(antivirusconfig,
antivirusupdate)
Content Filters
(policyconfig -> filters)
Outbreak Filters
(outbreakconfig, outbreakflush,
outbreakstatus, outbreakupdate)
Data Loss Prevention
(policyconfig)
Note
RSA Email DLP scanning is only
performed on outgoing messages.
performed on outgoing messages.