07-17-2024 05:17 AM
Hello All,
Need help on below points
Integration of CES CLI and GUI Login with SAML SSO using Microsoft Azure AD
https://docs.ces.cisco.com/docs/saml-authentication
Submitting False Positive or False Negative Sample Mails
Solved! Go to Solution.
08-09-2024 02:02 PM
yes you have to define each appliance on Azure.. and you can do one at a time..
only gui is doing SSO, not the CLI...
**Please mark as helpful if this was useful**
07-17-2024 01:26 PM
No risk as the local admin will also work at the same time...
for evaluation of false positive you have to generally open a TAC case.
Please mark helpful if this was helpful.
07-17-2024 02:33 PM
you can send mail to SPAM@access.ironport.com, phish@access.ironport.com, ham@access.ironport.com, ads@access.ironport.com
Or you can can deploy the Outlook plugin. https://software.cisco.com/download/home/284900944/type/283090986/release/7.6.2-037
you can see what happens to those from here: https://talosintelligence.com/email_status_portal
(go to talosintelligence.com, login, click on Email Submissions in the upper right.)
From there, under Manage Account on the left you can claim you domains, etc...
07-18-2024 03:35 AM
Hi Ken,
Do i need to create an account on talosintelligence.com before forwarding mails to SPAM@access.ironport.com, phish@access.ironport.com, ham@access.ironport.com, ads@access.ironport.com.
I have checked some document it says plug-in End Of Life was December 31, 2023 and in place of that email submission add-in have been introduced. Does installing Email submission add-in autoinstalls Encryption Add-In, if yes how can i unselect Encryption Add-In part. Please refer below screenshot.
Atlast forwarding mails to specified ironport mail address will make an auto entry to https://talosintelligence.com/email_status_portal
07-18-2024 04:21 AM
07-17-2024 05:46 PM
Assuming they didn't change how this works in the cloud from the way on-prem ESAs work, the local accounts still work fine.after you enable SSO
07-17-2024 11:22 PM
Yes it works the same on CES - actually i have implemented a few times.
08-09-2024 01:44 AM
Hello
I'm planning to follow below approach for sso login.
can i enable sso for only one gateway at first post successful sso, will enable for all gateway by making neccessary changes at reply assertion url at gateway and microsoft azure both.
does configuring sso will impact cli also or only gui login.
08-09-2024 02:02 PM
yes you have to define each appliance on Azure.. and you can do one at a time..
only gui is doing SSO, not the CLI...
**Please mark as helpful if this was useful**
07-17-2024 10:27 PM
Hi Vishal,
To analyze false positive or false negative emails in Cisco Email Security, follow these steps:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide