Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 1197
 
28-21
User Guide for AsyncOS 9.7 for Cisco Email Security Appliances
 
Chapter 28      Using Email Security Monitor
  Email Security Monitor Pages
Hit Messages by Threat Level section shows the percentage and number of incoming threat messages 
(viral and non-viral) based on threat levels (Level 1 through 5).
Messages resided in Outbreak Quarantine section shows the number of threat messages resided in the 
Outbreak Quarantine based on the duration.
Top URL's Rewritten section shows the list of top 10 URLs that were rewritten based on the number of 
occurrences. Use the Items Displayed drop-down to view more rewritten URLs. Click on the number to 
view a list of all the messages that contain the selected rewritten URL on the Message Tracking page.
Using the Outbreak Filters page, you can answer questions like:
How many messages are being quarantined and what type of threats were they?
How much lead time has the Outbreak Filter feature been providing for virus outbreaks?
How do my local virus outbreaks compare to the global outbreaks?
Virus Types Page
The Virus Types page provides an overview of the viruses entering and being sent from your network. 
The Virus Types page displays the viruses that have been detected by the virus scanning engines running 
on your appliance. You might want to use this report to take a specific action against a particular virus. 
For example, if you see that you are receiving a high volume of a viruses known to be embedded in PDF 
files, you might want to create a filter action to quarantine messages with PDF attachments. 
If you run multiple virus scanning engines, the Virus Types page includes results from all enabled virus 
scanning engines. The name of the virus displayed on the page is a name determined by the virus 
scanning engines. If more than one scanning engine detects a virus, it is possible to have more than one 
entry for the same virus.
The Virus Types page gives you an overview of the viruses entering or being sent from or to your 
network. The Top Incoming Virus Detected section shows a chart view of the viruses that have been sent 
to your network in descending order. The Top Outgoing Virus Detected section shows a chart view of 
the viruses that have been sent from your network in descending order. 
Note
To see which hosts sent virus-infected messages to your network, you can go to the Incoming Mail page, 
specify the same reporting period and sort by virus-positive. Similarly, to see which IP addresses have 
sent virus-positive email within your network, you can view the Outgoing Senders page and sort by 
virus-positive messages.
The VirusTypes Details listing displays information about specific viruses, including the infected 
incoming and outgoing messages, and the total infected messages. The details listing for infected 
incoming messages displays the name of the virus and the number of incoming messages infected with 
this virus. Similarly, the outgoing messages displays the name of the virus and the number of outgoing 
messages infected with the virus. You can sort the Virus Type details by Incoming Messages, Outgoing 
Messages, or Total Infected Messages. 
URL Filtering Page 
URL Filtering report modules are populated only if URL filtering is enabled.
URL Filtering reports are available for incoming and outgoing messages.