Enables or disables campaign detection on the appliance.
A campaign is a set of potentially malicious email messages with similar characteristics. The campaign detection feature groups emails that have similar characteristics, such as the attachment name, subject, or sender. When campaign detection is enabled, you can identify a set of related email messages with similar characteristics. A typical campaign can run for three days on the Email Security — Server appliance by default.
The campaign detection feature is enabled by default.
For details about detecting campaigns, refer to the "Monitoring Alerts" chapter of the Email Security — Server User Guide.
Syntax
[no] ecd enable
Parameters
no
Disables campaign detection.
Examples
The following example enables campaign detection on the appliance:
hostname (config) # ecd enable
The following example disables campaign detection on the appliance:
hostname (config) # no ecd enable
User role
Admin or Operator
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Email Security — Server: Release 8.1.2