Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 1094
 
14-19
Cisco AsyncOS 8.0.1 for Email User Guide
 
Chapter 14      Outbreak Filters
  Monitoring Outbreak Filters
Figure 14-8
The Outbreak Quarantine Manage by Rule Summary View
From this view, you can choose to release, delete, or delay the exit for all messages pertaining to a 
specific outbreak or adaptive rule, rather than selecting individual messages. You can also search through 
or sort the listing.
This functionality is also available via the 
quarantineconfig -> outbreakmanage
 CLI command. For 
more information, see the Cisco AsyncOS CLI Reference Guide.
Monitoring Outbreak Filters
The Cisco appliance includes several tools to monitor the performance and activity of the Outbreak 
Filters feature.
Outbreak Filters Report
The Outbreak Filters report to view the current status and configuration of Outbreak Filters on your 
Cisco appliance as well as information about recent outbreaks and messages quarantined due to 
Outbreak Filters. View this information on the Monitor > Outbreak Filters page. For more information, 
see the “Email Security Monitor” chapter in the Cisco IronPort AsyncOS for Email Daily Management 
Guide
.
Outbreak Filters Overview and Rules Listing
The overview and rules listing provide useful information about the current status of the Outbreak Filters 
feature. View this information via the Security Services > Outbreak Filters page.
Outbreak Quarantine
Use the outbreak quarantine to monitor how many messages are being flagged by your Outbreak Filters 
threat level threshold. Also available is a listing of quarantined messages by rule. View this information 
via the Monitor > Local Quarantines > Outbreak link and the Manage Rule by Summary link on the 
Monitor > Local Quarantines page. See 
for more information.
Alerts, SNMP Traps, and Outbreak Filters
The Outbreak Filters feature supports two different types of notifications: regular AsyncOS alerts and 
SNMP traps.