analysis custom whitelist sha256

Prev Next

Adds a rule to a custom whitelist based on the SHA-256 hash file.

A whitelist allows you to control which messages that contain an attachment can be bypassed based on the matched known rule entries. No further analysis is performed. The appliance will not analyze an attachment within an email message for malicious content if it contains the SHA-256 hash file that you defined and added to the appliance database.

You can add up to 10,000 whitelist entries to the appliance database.

Note

This command replaces the deprecated custom whitelist sha256 <sha256> command introduced in Release 7.7.

Syntax

[no] analysis custom whitelist sha256 <sha256>

Parameters

no

Use the no form of this command to delete the whitelist rule based on the SHA-256 hash file.

Example

The following example adds the SHA-256 hash file "2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881" to the whitelist:

hostname (config) # analysis custom whitelist sha256 2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881

The following example deletes the SHA-256 hash file "2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881" from the whitelist:

hostname (config) # no analysis custom whitelist sha256 2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881

User role

Admin or Operator

Command mode

Config

Supported Appliances

This command is supported on the following appliances running the specified releases or later:

  • Email Security — Server: Release 7.9

  • File Protect: Release 7.7.2

  • Network Security: Release 7.9