show email-analysis adv-url-defense configuration

Prev Next

Displays configuration information about the Advanced URL Defense feature.

Syntax

show email-analysis adv-url-defense configuration

Parameters

None

Output fields

The following table describes the output fields for the show email-analysis adv-url-defense configuration command. For detailed information, see the Email Security — Server User Guide.

Field

Description

Feature Enabled

Whether the Advanced URL Defense feature is enabled on the Email Security — Server appliance. The feature is disabled by default.

URL Re-writing Enabled

Whether the URL rewriting feature is enabled. Trellix recommends that you enable this feature when Advanced URL Defense is enabled. The URL rewriting feature enables an appliance deployed in block mode to rewrite the URLs within a message. The appliance prepends protect2.fireeye.com (in Release 7.8.0 or later) or protect.fireeye.com (in release 7.6.x) to the rewritten URL.

DTI FAUDE lockout monitoring interval

The number of seconds to wait before each check for Advanced URL Defense processing failures. The default is 300 seconds.

A failure occurs when the URL analyzer cannot send requests for Advanced URL Defense processing due to network issues or an invalid server configuration. A lockout temporarily prevents the URL analyzer from sending requests for Advanced URL Defense processing.

DTI FAUDE lockout interval

The number of seconds to wait after a lockout before restarting requests for Advanced URL Defense processing. The default is 60 seconds.

DTI FAUDE max failure rate to trigger lockout

The maximum number of failures detected within a lockout monitoring interval before a lockout is triggered.

DTI FAUDE max num failures to trigger lockout

The maximum number of failures detected before a lockout is triggered, whether or not the lockout monitoring interval has elapsed.

Example

The following example shows the Advanced URL Defense configuration.

hostname # show email-analysis adv-url-defense configuration
Email-Analysis Advanced URL Defense Configuration:
  Feature Enabled:                                yes
  URL Re-writing Enabled:                         yes
  DTI FAUDE lockout monitoring interval:          300
  DTI FAUDE lockout interval:                     60
  DTI FAUDE max failure rate to trigger lockout:  20
  DTI FAUDE max num failures to trigger lockout:  100

User role

Admin, Operator, Monitor, or Analyst

Command mode

Enable

Supported appliances

This command was released as follows:

  • Email Security — Server: Release 7.6.0. The output fields changed in later releases.