This section describes the commands for configuring event notifications. Event notifications inform you when malware objects (file attachments with a malicious executable payload) are detected so that you can protect the security of your network.
Trellix threat prevention platforms notify you of events by any combination of the following methods:
Email—Notifications are sent by email to one or more addresses using Simple Mail Transfer Protocol (SMTP).
HTTP—Notifications are posted to one or more Web servers.
Rsyslog—Notifications are sent to one or more remote syslog servers.
SNMP—Notifications are sent to one or more Simple Network Management Protocol (SNMP) servers.
You can specify the notification format (such as XML, JSON, or text) and the level of detail for each notification method.
Note
When analysis is complete and the status of the email has changed to Complete, you receive all eAlerts and riskware alerts associated with the email message.
System email notifications are covered in the Email Security — Server System Administration Guide.