Cisco Cisco Email Security Appliance C190 Guia Do Utilizador

Página de 460
 
10-19
Cisco IronPort AsyncOS 7.6 for Email Configuration Guide
OL-25136-01
Chapter 10      Outbreak Filters
Note
You can use the Outbreak Filters feature without having enabled anti-virus scanning on the Cisco 
IronPort appliance. However, Outbreak Filters cannot scan for non-viral threats if anti-spam scanning is 
not enabled on the appliance.
Outbreak Quarantine and the Manage by Rule Summary View
You can view the contents of the Outbreak quarantine by clicking on the name of the quarantine in the 
listing on the Monitor menu in the GUI. The Outbreak quarantine has an additional view as well, the 
Outbreak Quarantine Manage by Rule Summary link.
Figure 10-7
The Outbreak Quarantine Manage by Rule Summary Link
Using the Summary View to Perform Message Actions on Messages in the Outbreak Quarantine Based on Rule ID.
Click on the Manage by Rule Summary link to see a listing of the contents of the Outbreak quarantine, 
grouped by rule ID:
Figure 10-8
The Outbreak Quarantine Manage by Rule Summary View
From this view, you can choose to release, delete, or delay the exit for all messages pertaining to a 
specific outbreak or adaptive rule, rather than selecting individual messages. You can also search through 
or sort the listing.
This functionality is also available via the 
quarantineconfig -> outbreakmanage
 CLI command. For 
more information, see the Cisco IronPort AsyncOS CLI Reference Guide.
Monitoring Outbreak Filters
The Cisco IronPort appliance includes several tools to monitor the performance and activity of the 
Outbreak Filters feature.