Hi,
I'm trying to configure a rule for messages containing encrypted attachments. I would like these messages to be quarantined and send a notification about this to the recipient.
Unfortunately the only quarantine-action I can choose is "Hold Message in SPAM Quarantine". This is not good enough for me because the spam-quarantine only can hold messages smaller than 1 Mb.
Ideally I would like to create an incident with hold-actions on the message, but this is not possible in the virus-policies.
Does anyone know how to solve this problem?
Regards
Magne