cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
592
Views
0
Helpful
1
Replies

Anyone Using Adaptive Rules within Outbreak Filters?

MARK SCHWANTJE
Beginner
Beginner

After recently configuring URL logging on our IronPorts, I realized that we do not currently have Adaptive Rules configured as part of our Outbreak Filters. I'm curious if anyone has this enabled and whether it has proven effective in catching outbreak messages.

Thanks.

1 Reply 1

Mathew Huynh
Cisco Employee
Cisco Employee

Hello Mark,

 

Generally we suggest enabling it to allow for catching of possibly zero-day malicious attachments based on what the sensory information provides for rules.

 

Regards,

Matthew