Cisco Cisco Email Security Appliance C160 ユーザーガイド

ページ / 1185
 
1-2
Cisco AsyncOS 8.5.6 for Email User Guide
 
Chapter 1      Getting Started with the Cisco Email Security Appliance
  What’s New in This Release
Advanced Malware 
Protection 
Improvements 
Port 443 is now supported for file reputation queries. You can use an 
upstream proxy for communications with the cloud service.
File reputation threshold is updatable through updater server. If you do 
not want to use this value, you can override the file reputation threshold 
with a custom value. 
Note: If you are using a custom file reputation threshold value, after 
upgrading to Cisco AsyncOS 8.5.6 for Email, this value is overwritten 
with the value from updater server.
For file analysis, AsyncOS logs files’ SHA in the mail log and failure 
reasons in the AMP log 
AsyncOS automatically obtains the latest SSL certificates for 
connections with cloud services. 
You can view the results of the most recent check for Advanced Malware 
Protection Cloud Services connectivity.
For more information, see 
Chapter 16, “File Reputation Filtering and File 
Analysis.”
 
Outbreak Filter 
Enhancements
From the Outbreak Filters page, you can now drill-down for more 
information about the following reports using message tracking:
Threat Summary
Threat Details
Top URL's Rewritten
From the Message Tracking page, you can now filter messages based on 
the following message processing events:
URL Rewritten by Outbreak Filter
Outbreak Filter Threat Category
Changed Behavior
Logging of URLs
Logging of URL-related logs is disabled by default. This includes the logs for 
the following events:
Category of any URL in the message matches the URL category filters
Reputation score of any URL in the message matches URL reputation 
filters
Outbreak Filter rewrites any URL in the message
Use the 
outbreakconfig
 command in CLI to enable the logging of these 
events. See 
.
Feature
Description