Messaging Gateway

 View Only
  • 1.  Malware Vs. Content Policy

    Posted Jul 02, 2014 03:57 AM

    Hello

    I have two different configuration regarding encypted attachments:

    1. Contenet Policy rule which specifies "Password Protected" list which includes document and arvhice files

    2. Malware rule: Inbound encrypted attachment policy: Modify Subject [ENCRYPTED].

    Which of the following will be activated once a documet is sent as attachement?

    Thanks

    Dudu

     



  • 2.  RE: Malware Vs. Content Policy

    Posted Jul 03, 2014 02:47 AM
    I think it depends on the actual content of the attachment. If I recall correctly, "Password Protected" list matches files that can have encrypted content, but does not mean it is really encrypted. The Malware rule is based on the actual scan result from the virus engine, and attachment IS encrypted in this case. Also Malware rules should have precedence over content policies. So with encrypted attachment Malware rules fires, but if not then content policy should fire. Hope this helps, Haro