Incident Representation Settings
Has anyone ever used the Incident Representation settings on the protocol configurations under System > Settings > Protocols > SMTP ?
I want to disable our ability to see traffic on the internal/inbound and I know that creating an exclusion in the policy for our domains or just allowing Uni-Directional flow at the switches would solve the issue but I'd like to handle the exclusion at the L7 side of things. The SYMC definition of how the Uni-Directional setting works is as follows:
Uni-Directional - Evaluate only outgoing traffic.
Has anyone toyed with this feature to make sure it works as intended?