Jump to content

BCS-E

Members
  • Posts

    22
  • Joined

  • Last visited

  • Days Won

    1

Posts posted by BCS-E

  1.  

     

    MJ.semah

    MJ.semah
    • Group: Members
    •  
    • Posts: 2
    • Kudos: 0
    • Joined: 05-August 15

    Posted 22 March 2016 - 03:27 PM

    go to the rule and uncheck * .class it will solve the problem  it's been tested and it works I guarantee you

     

    (support ESET France)

     

    Hi, where is this rule?

     

    I've had a look at our mail transport rules, and *.class isn't listed - yet it is still deleting some office files. We are on 6.3.10005, with Exchange 2013 RU15.

     

    Chris

     

     

    *.class is under the 'Dangerous executable file attachments' rule. 

     

    I disabled the 'Windows Executable' rule in 6.2 to prevent *.docx from blocking.

    post-2710-0-79285500-1464339569_thumb.jpg

  2. Updated ESMX from 6.3.10005.0 to 6.3.10007.0 (on customer server) just to be sure. Enabled diagnostic logging for 24 hours but i am only seeing filtered messages in the log. Exported the log with Eset log collector to see if it is showing more info but its not. Or do i need to check the log somewhere else?

     

    The same message sent from 2 different ip's. Only one of them is filtered by Eset and found in the log.

     

    The other one should be filtered by RBL list.

     

    post-2710-0-00700900-1464076536_thumb.jpg

    post-2710-0-55436500-1464076536_thumb.jpg

    post-2710-0-25866000-1464076610_thumb.jpg

  3. RBL lists are very efficient in filtering. Almost every SPAM sender is listed on an RBL list.

     

    All SPAM mails not recognized as SPAM by ESET should be filtered by the RBL lists set in ESET. This is not happening.

     

    What is going wrong? I setup RBL lists on multiple mail servers with ESMX 6. None of them show mails filtered by RBL in the log.

     

    See attachment for settings. It would be nice if someone from ESET could answer. Multipe topics on the forum about RBL are not answered/solved!!!

    post-2710-0-26647900-1463998883_thumb.jpg

  4. Hello,

     

    We recently installed ESET Mail Security for linux on a Ubuntu bases Zarafa mail server with Postfix.

     

    The configuration of postfix is as follows:

     

    myhostname = server
    alias_maps = hash:/etc/aliases
    alias_database = hash:/etc/aliases
    myorigin = /etc/mailname
    mydestination = localhost
    relayhost = smtp.provider.something
    mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128
    mailbox_size_limit = 0
    message_size_limit = 25600000
    virtual_mailbox_domains = domain_1 domain_2
    virtual_mailbox_maps = ldap:/etc/postfix/users.cf
    virtual_alias_maps = ldap:/etc/postfix/aliases.cf
    virtual_transport = tothemailserver
    recipient_delimiter = +
    inet_interfaces = all
    inet_protocols = ipv4

     

    Mail delivered from outside is passed on to Postfix. If destination is not domain_1 or domain_2 a relaying denied message is generated. Otherwise mail is forwarded to the mailserver

    Localhost is secure. Only the Zarafa mail server delivers mail to Postfix. Zarafa has only authenticated access.

     

    We then followed the manual on the ESET site "ESET Mail Security & Zarafa 7 infrastucture". Unfortunatelly we followed it to blindly. Smooth installation en configuration. Postfix to port 2525 ESET receiving on 25 and forwarding to 2525.

    It was rather quickly up and running and we were quite happy with the results.

     

    Until several days later we found out we had created an open relay. By installing ESET MS in front the postfix server all mail delivered to postfix is from localhost and as such secure. > 99,9% of all incoming mail was nicely processed by ESET MS assigned a SPAM label and forwarded by postfix to the provider smarthost !!!

     

    In my opinion ESET MS should block non domain oriented mail with a relaying denied message. However ESET is turning to HQ for support and in the meantime we disabled ESET MS.

     

    What is the correct way to install ESET Mail Security for Linux .....

     

    Thanks for reading.

     

     

  5. I've created a dynamic group in a static (Active Directory) group for testing. The static group contains 4 clients. 

     

    For testing i've created a client task which is triggered bij clients who join that dynamic group inside the static (Active Directory) group.

     

    The problem is that the task is applied to all clients in all groups. The task which should install Eset Endpoint v6 now removed all File Security and Mail Security applications form servers who are not in that dynamic or static group. 

     

    Running on Virtual Appliance

     
    ESET Remote Administrator (Server), Version 6.1.450.0
    ESET Remote Administrator (Webconsole), Version 6.1.282.0
     

    What can i do to fix this?

     
     

    post-2710-0-15165100-1431516157_thumb.png

    post-2710-0-96402400-1431516157_thumb.png

  6. Thanks jraley!

     

    I was able to deactivate the clients when i logged in with the license key. But we are managing mutiple licenses for multiple customers so i wanted to use my account where i added the customers who upgraded to v6. Logging in with license key means i could manage only that license.

     

    Marcos i will send you a PM.

  7. Hi

     

    If you want to put the computer in to an OU and have ESET auto install then firstly create a GPO to install the ESET Agent Live Installer hxxp://kb.eset.com/esetkb/index?page=content&id=SOLN3595 (you can edit the batch file to search for /qr and replace with /qn to make it completey silent) and assign it to the OU, once the Agent is installed then the ERA can do its thing.

     

    Create a Client install task to install the ESET software and licence etc and assign it to the OU Group and set the 'Trigger' for when Joined/changed depending on the wording for the version of ERA you have installed.

     

    I normally create a Dynamic group based on 'is there is another AV installed', a client task removes this, another dynamic group for 'no other AV and no ESET', a sub dynamic groups for workstation and server OS and then assign the client install tasks for installing EEA/EES or EFSW depending on the server.

     

    Could you please post an example of the Dynamic Groups you created. Especially the 'another AV installed'. 

×
×
  • Create New...