Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Highlighted
Participant

Threat Extraction

Hi all,

from one of our customers we have an appliance that performs the mta and the TE / TX. All based on R80.30 JHF 155.

In the TX configuration, in the advanced section, the entry Encrypted files: Block.

we tried to receive an email with a password zip, but the email arrives regularly with the attachment included

[Expert@cp-atp:0]# tecli advanced analyzer prohibited
Command: root->advanced->analyzer->prohibited

Available options:
encrypted - Deprecated! please refer to Policy Granularity Manager - tec

Immagine.png

 

on the log we see the part of TE who works the file and then delays it to the mailbox

Immagine_2.png

0 Kudos
0 Replies