Email Security.cloud

 View Only
  • 1.  Viewing messagelabs logs?

    Posted Apr 15, 2014 08:23 AM

    Hi there everyone, 

     

    Please forgive my ignorance and lack of knowlege in this area. We were recently domain blacklisted due to an email marketing campaign run by an ad agency and it has been left to me to do the post mortem and report as to what happened. Fortunately we were taken off the blacklist after appeal, however, we want to ensure that there are no residual after effects.

    One of the things i had asked our tech support company (who manage email servers etc) to do, was to search the server logs on our returned/non deliverable mails for certain strings like the microsoft blockages... bigfish & 88.blocklist.zap etc. However, they have since come back to me and told me the following:

    "With regard to the above request to search email logs for a specific message.

    It is not possible to search Messagelabs logs in this way, however, if our mail servers were to be added to a blocklist, incidents are raised and investigated immediately."

    To cut a long story short i find it hard to believe that you can't search email server logs... is this really the case?

    Please note that my lack of confidence in their answers comes from general lack of competence lately.

    Anyway, pleasse let me know what you guys think regarding this.

    Kind regards, 

     

    Craig



  • 2.  RE: Viewing messagelabs logs?

    Broadcom Employee
    Posted Apr 22, 2014 07:43 AM

    Symantec do not provide access to the raw MessageLabs / Email Security.cloud logs, and therefore it is not possible to perform a free-text search on the logs.  However, there is a facility called Track and Trace available for use through the ClientNet portal.  With this tool it is possible to search for all messages to or from a specific recipient, for example, or to search by message ID or subject.  Having identified specific messages of interest you can then drill down to get more detail regarding message scanning and delivery (eg server that the message was delivered to / rejected by, more details of the SMTP conversation, etc).

    Paul