This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Configure email alerting

Hello,

I have a question about configure alerting by email.

I configure one of my strategy for send an email when they have detected a virus or PUA. But in addition to send "threat" type of email i receive "notice" type email as updating....

It's possible that i have not set up as it should but if my configuration is correct,  It's possible to implement a sort of filter in Sophos console (i used 4.7.0.13 version) or i must configure a filter on my email application?

Thanks for your answers

Regards

Saiens

:48722


This thread was automatically locked due to age.
Parents
  • Hello Christian,

    Thanks you for your answer,

    I'll try to be cleared,

    For configure my email alerting i use this link :

    http://www.sophos.com/en-us/support/knowledgebase/17129.aspx

    From list available i choose only, the first and fourth options.

    Since i have activated this alerting, i receive two type of email "Threat" en "Notice".

    Fallowing an example of email "Notice" :

    Objet : RE: [SAV-LINUX] Notice from Sophos Anti-Virus on SERVR NAME 

    An event happened on the computer SERVER NAME.

    Updating Sophos Anti-Virus....

    Updating SAVScan on-demand scanner

    Updating Virus Engine and Data

    Updating Manifest

    Update completed.

    Successfully updated Sophos Anti-Virus from DIRECTORY

    But, i just want receive the fallowing email :

    Objet : [SAV-LINUX] Threat 'EICAR-AV-Test' detected on SERVER NAME 

    A threat classified as 'EICAR-AV-Test' was detected in the file 'FILE' when attempting to open it at Tue Apr  1 12:21:58 2014 CEST +0300 (2014-04-01 10:21:58 UTC).  Access to the infected file was not allowed.

    It is possible to filter this type of email on Console Enterprise Sophos?

    Many Thanks

    Saiens

    :48762
Reply
  • Hello Christian,

    Thanks you for your answer,

    I'll try to be cleared,

    For configure my email alerting i use this link :

    http://www.sophos.com/en-us/support/knowledgebase/17129.aspx

    From list available i choose only, the first and fourth options.

    Since i have activated this alerting, i receive two type of email "Threat" en "Notice".

    Fallowing an example of email "Notice" :

    Objet : RE: [SAV-LINUX] Notice from Sophos Anti-Virus on SERVR NAME 

    An event happened on the computer SERVER NAME.

    Updating Sophos Anti-Virus....

    Updating SAVScan on-demand scanner

    Updating Virus Engine and Data

    Updating Manifest

    Update completed.

    Successfully updated Sophos Anti-Virus from DIRECTORY

    But, i just want receive the fallowing email :

    Objet : [SAV-LINUX] Threat 'EICAR-AV-Test' detected on SERVER NAME 

    A threat classified as 'EICAR-AV-Test' was detected in the file 'FILE' when attempting to open it at Tue Apr  1 12:21:58 2014 CEST +0300 (2014-04-01 10:21:58 UTC).  Access to the infected file was not allowed.

    It is possible to filter this type of email on Console Enterprise Sophos?

    Many Thanks

    Saiens

    :48762
Children
No Data