<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>utf8 filename transfer attempt - what does it mean ?</title><link>https://community.sophos.com/sophos-xg-firewall/f/discussions/108259/utf8-filename-transfer-attempt---what-does-it-mean</link><description>Firewall blocked an email. I do not understand why . 
 Log: 
 2018-10-20 14:30:19IPSmessageid=&amp;quot;07002&amp;quot; log_type=&amp;quot;IDP&amp;quot; log_component=&amp;quot;Signatures&amp;quot; log_subtype=&amp;quot;Drop&amp;quot; ips_policy=&amp;quot;&amp;quot; ips_policy_id=&amp;quot;7&amp;quot; fw_rule_id=&amp;quot;71&amp;quot; user=&amp;quot;&amp;quot; sig_id=&amp;quot;12597&amp;quot; message=&amp;quot;SERVER-OTHER</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: utf8 filename transfer attempt - what does it mean ?</title><link>https://community.sophos.com/thread/387091?ContentTypeID=1</link><pubDate>Sun, 21 Oct 2018 16:25:25 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:c7e6b250-f9f4-41cf-a8ef-6af1e554d120</guid><dc:creator>rfcat_vk</dc:creator><description>&lt;p&gt;Hi MBP,&lt;/p&gt;
&lt;p&gt;I wasn&amp;#39;y sure about the mail service version in the current XG.&lt;/p&gt;
&lt;p&gt;Thank you for the update.&lt;/p&gt;
&lt;p&gt;ian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: utf8 filename transfer attempt - what does it mean ?</title><link>https://community.sophos.com/thread/387081?ContentTypeID=1</link><pubDate>Sun, 21 Oct 2018 03:56:20 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:aeae62f7-8c4b-448b-92e8-a843408d1041</guid><dc:creator>LuCar Toni</dc:creator><description>&lt;p&gt;Hi Ian,&lt;/p&gt;
&lt;p&gt;most likely this is not caused by the XG MTA. Instead some kind of service in the network causes those IPS alerts.&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: utf8 filename transfer attempt - what does it mean ?</title><link>https://community.sophos.com/thread/387068?ContentTypeID=1</link><pubDate>Sat, 20 Oct 2018 17:05:36 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:8f246b5f-454e-415c-a331-d3c350f81cca</guid><dc:creator>rfcat_vk</dc:creator><description>&lt;p&gt;Hi,&lt;/p&gt;
&lt;p&gt;here is the link to snort, provides details.&lt;/p&gt;
&lt;p&gt;&lt;a href="https://www.snort.org/rule-docs/1-12597"&gt;https://www.snort.org/rule-docs/1-12597&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Wouldn&amp;#39;t say it is the clearest explanation I have seen. I believe the mail service in XG will be replaced n V17.5&lt;/p&gt;
&lt;p&gt;Ian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>