Configuring the file filter

 

Applies to: Forefront Security for Exchange Server

You can configure the file filter by file names, file types, or file sizes.

To configure the file filter

  1. In the Shuttle Navigator, click FILTERING.

  2. Click the File icon. The File Filtering pane appears.

  3. Select the scan job for which you want to add a file filter.

  4. Create the file filter by clicking the Add button and entering the proper syntax. There are a number of ways you can enter a file filter. File filters work by a combination of file name and file type. You must select both elements to complete the filter.

  5. Use the File Filter field to set the filter to Enabled.

  6. In the Action field, indicate the action that should be taken when a file filter is matched. The options are described in File filtering action.

  7. Select if you would like to send notifications when a file is detected. In addition, you must also configure the notifications (see Sending e-mail notifications).

  8. Select if you would like detected files quarantined. Enabling quarantine causes deleted attachments and purged messages to be stored, permitting you to recover them. However, worm-purged messages are not recoverable.

  9. Optionally, you can specify Deletion Text, which is used to replace the contents of an infected file during a delete operation. The default deletion text informs you that an infected file was removed, along with the name of the file and the name of the filter. To create your own custom message, click Deletion Text.

  10. Click the Save button to save the new file filter.

Note

You can also put your filters in Filter lists.