Does Ironport support the sharing of Threat Intelligence by:
TAXII protocol?Manual ingestion of threat intel (ex. CSV upload)?Export of threat intel (ex. to share to other tools)?
Is it possible to find the email sender ip address in Ironport logs?We recently had a virus outbreak, an infected computer -that no one could finde - was sending out email. Locating the computer would help this situation out.
Could you please help on the below message is about
The Critical message is:
An application fault occurred: ('shared/UserPreferences.py getReportSections|106', "<type 'exceptions.AttributeError'>", "'str' object has no attribute 'get'", '[util/Aq...
Hi
We have several external IP addresses on our IronPorts. If we send out notifications (by a message filter using notify())AsyncOS automatically selects the lowest available address.
Can this be influenced in any way?
(setting deliveryconfig to ...
Hello,
I am just wondering how to add a maildomain and all subdomains to an addresslist.
For the HAT I can add .example.com for all servers in that domain and all subdomains, but for the addresslists I need that "@". So a @example.com is only the m...
Hi, We have deployed ASA since last few months, everything is working fine, but we have observe that sometimes if a file is declared Malware disposition from Cisco Cloud, it randomly changes to 'unknown' and that malicious file passed on to internal ...
Hi there,
I have one question concerning ldap group querys.
At which time the group query are executed? Just when they are used ( I use them on message filters)
or is there a separate "pipeline" like LDAP Accept or Routing query?
If they are executed...
Hi Team,
Could you please clarify the below Error description? what will be the impact? and the steps to minimize the impact as well.
The Critical message is:
An application fault occurred: ('navigation/HelpBarYUI.py my_tasks_list_submenu|639', ...
Hello guys,
on our ESA C170 we get this error message:
Warning Directory Attack Prevention Potential Virus Attack detected Expiry of a KEY in 190 days
How to interpret it and what actions are needed?
Thanks,
Vesko
Hello,
I have a customer that want to send mails that have been quarantined to himself, to his own mailadress. He would like to "view" them before releasing them. Is that possible?
A customer of mine thinks there is a lot of false positives regarding their current ESA solution. Version is/was 9.7.X. Also, they would like to now why a mail is classified as SPAM not just the SBRS.
Hello,
I have a customer that is using "text resource". This seems to burden the system or att least the text resource feature. Does anybody have the same problem?
i installed Active directory 2088R2 with exchange server 2010
1) first exchange server (mail.x.com) vlan 40"192.168.40.245" i want to use it as internally
2) second exchange server (mail.y.com) vlan 42"192.168.42.245 i want to use it as ...
Does anyone know what doc or where I can find a list of system messages specifically for Cisco ESA's? I need to import them into a SIM and I need the list for parsing and alerting setup. Can't seem to find this.
Thank you,
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: