Adds a rule to a custom whitelist based on the SHA-256 hash file.
A whitelist allows you to control which messages that contain an attachment can be bypassed based on the matched known rule entries. No further analysis is performed. The appliance will not analyze an attachment within an email message for malicious content if it contains the SHA-256 hash file that you defined and added to the appliance database.
You can add up to 10,000 whitelist entries to the appliance database.
Note
This command replaces the deprecated
custom whitelist sha256 <sha256>command introduced in Release 7.7.
Syntax
[no] analysis custom whitelist sha256 <sha256>
Parameters
no
Use the no form of this command to delete the whitelist rule based on the SHA-256 hash file.
Example
The following example adds the SHA-256 hash file "2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881" to the whitelist:
hostname (config) # analysis custom whitelist sha256 2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881
The following example deletes the SHA-256 hash file "2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881" from the whitelist:
hostname (config) # no analysis custom whitelist sha256 2ff34afe77d5dd3b92c4d9c6bc1003870580e2d7a51ace181c0fc6fac62bd881
User role
Admin or Operator
Command mode
Config
Supported Appliances
This command is supported on the following appliances running the specified releases or later:
Email Security — Server: Release 7.9
File Protect: Release 7.7.2
Network Security: Release 7.9