Jump to content

Yafu Ji

Members
  • Posts

    14
  • Joined

  • Last visited

  • Days Won

    1

Yafu Ji last won the day on November 20 2023

Yafu Ji had the most liked content!

About Yafu Ji

  • Rank
    Newbie
    Newbie

Profile Information

  • Location
    Australia

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. Hi @Marcos @M.K. After importing this script, the Blocked IPs are cleaned from the UI. However, it is still blocked in the background. As a result, it turns into a disaster!! Emails are blocked because IPs are blocked in the local blacklist, but the local blacklist is empty!! Need help now! <?xml version="1.0"?> <ESET> <PRODUCT NAME="emsx" VERSION="11.0.10005" EXPORTED_BY_CE="2109.2 (20240213); 2129"> <ITEM NAME="antispams"> <ITEM NAME="settings"> <ITEM NAME="BlockedIPs" DELETE="1"> </ITEM> </ITEM> </ITEM> </PRODUCT> </ESET>
  2. Just a bit further details. The "[SPAM]" tag has been added, as shown in the picture below. How to remove the tag when releasing this email? Cheers!
  3. I work with mail security for Microsoft Exchange Server, specifically within mail transport protection. Initially, I configured the system to "Append a tag to the body of scanned messages" for infected messages only and enabled the "Modify subject" option. Subsequently, several emails were quarantined and labeled as spam, a result of incorrect anti-spam protection settings. Upon realizing this, I changed the settings to "Do not append tags to messages" and disabled the "Modify subject" option. However, when I released the quarantined emails, the "[spam]" tag remained in the email subjects, suggesting the tag had been appended at the time of quarantine. Is there a way to release the quarantined emails without retaining the "[spam]" tag in their subjects?
  4. Thanks @Marcos Just a heads-up that the ESET or Exchange server needs to be restarted after the configuration is imported. Otherwise, the UI would show that no IPs are in the blocked list, but the old configuration is still taking effect. ----------------------------------- A further question. How does the feature of "append a tag to the body of scanned message" work? Is a tag appended when the email is quarantined or when it is released? Currently, I have a bunch of emails being quarantined when the "append a tag" feature is enabled. I would like to release the quarantined emails without having the appended tag. Are there any solutions?
  5. Hi @Marcos Thanks for providing the file. I saved it as a local copy and then imported it. The result shows "Not all input data have been imported", as shown in the picture, and no records have been removed. Do you know what I did wrong?
  6. Thanks for the reply. @M.K. The document is not available to download. Is there any other way for me to get it?
  7. Thanks for the advice. @Marcos. I will raise a support ticket later for the spam. I think the first problem to fix is to remove the millions of IP addresses. As you said, this could also affect performance. Do you have an efficient way to do this?
  8. Recently, we've seen an increase in spam emails. To address this, I attempted to block IP addresses listed on https://www.ipdeny.com/ipblocks/. I blocked more than 200,000 IPs from this site, but unfortunately, some of our clients' emails were also blocked as a result. Considering this, I believe it's best to revert to the previous settings by removing all these IP blocks. However, the interface only permits the removal of 200 records at a time, which complicates the process. To mitigate the issue for now, I've implemented a policy via the ESET Administration Center. I recommend cleaning up these settings to avoid confusion among other administrators, which could lead to the accidental disabling of this policy. Does anyone have a more efficient method to reverse the import of the 200,000 blocked IP records in our Mail Security's local settings?
  9. Thanks, Peter! Appreciate it! No problems! I can confirm that - I restored the update - Upgraded with the latest modules As a result, both ESET Server Security and ESET Mail security worked as expected!
  10. The same issue happened to our ESET server security this morning. Then, we went through the following steps for both servers. 1. Click Setup on the ESET monitoring software. 2. Click on the Advanced Setup at the right bottom. 3. Choose "Update" tab 4. In the module rollback, click the "rollback" button and select "until revoked". Then, the red alerts disappeared on both servers. Here are our installed modules. In the ESET Mail Security In the ESET server security I would appreciate it if anyone could answer the following: 1. What caused the issue? 2. When or how can we restore the module update?
  11. Hi, I'm running ESET Mail security for exchange for our business. I just received an email notification with saying "During execution of Kernel on the computer [server name], the following event occurred: An error occurred during loading scanner modules. Malware protection will not work correctly." Then, I logged into the server and found the message, as shown in the picture below. I rebooted my server twice but the problem wasn't solved. Here is some of my basic info OS version: Windows server 2012 R2 , 6.3.9600.21620 ESET version: 10.1.10012.0 License: valid until 01/06/2024 Does anyone know the cause? Also, can anyone point me to the solution?
×
×
  • Create New...