Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG Firewall email scaning

Hello

I recently updated my Cyberoam vUTM to Sophos XG, after configuring the email scaning rule i´m still receive infected emails, checking the attachment with virustotal.com says the sophos engine and avira engine must detect it, but not.

Can somebody help me?


Thank you all



This thread was automatically locked due to age.
Parents
  • Hello Kim

    I have configured the rule as shown, with Remove and Deliver, but it still deletes and replace the body of the email. This is the message i receive instead the original (as you see in the name the firewall add Infected Attachment Removed, but all of the body content is replaced too):

    Asunto: [Infected Attachment Removed] Fwd: prueba virus
    Fecha: Wed, 16 Dec 2015 13:59:18 +0100
    De: Dario <dario@tapiatelecom.com>
    Para: soporte@tapiatelecom.com


    Sophos Anti Virus has found Infected Attachment in the following message:
    ----------------------
    From: dario@tapiatelecom.com
    To: soporte@tapiatelecom.com
    Date: 2015-12-16 13:59:10


    Virus Name(s): 'HIDDENEXT/Worm.Gen'
    Attachment Name(s): factura-A1-0005801571_.pdf.zip
  • What was the message (body) of the email?
Reply Children
No Data