Enabling or disabling custom YARA rules using the CLI

Prev Next

Use the commands in this procedure to enable or disable custom YARA rules on your Email Security - Server appliance. You cannot use the Web UI to configure YARA rules.

Prerequisites

  • An established connection between the Email Security - Server appliance and the Internet.

  • You are logged in to the CLI as an Admin or Operator access.

To enable or disable custom YARA rules:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Enable or disable custom YARA rules.

    • To enable custom YARA rules:

      hostname (config) # yara policy cust
    • To disable custom YARA rules:

      hostname (config) # yara policy disable
  3. Verify your configuration.

    hostname (config) # show static-analysis config
    .....
    Yara Configuration
     Yara policy                          : cust
    .....
  4. Save your changes.

    hostname (config) # write memory
    Saving configuration file ... Done!