Enabling remote Email Security — Server appliance event correlation

Prev Next

Follow these steps to enable remote Email Security — Server appliance event correlation on the Central Management System appliance. When this is enabled, the Central Management System appliance will distribute the set of malicious URLs collected from the Network Security appliances to all eligible managed Email Security — Server appliances.

Prerequisites
  • One or more Network Security appliances managed by the Central Management System appliance

  • One or more Email Security — Server appliances managed by the Central Management System appliance

  • The managed Email Security — Server appliances are release 7.9.x or later

Note

By default, alert correlation and remote correlation are enabled on any Central Management System appliance that manages one or more Network Security appliances and one or more Email Security — Server appliances of release 7.9.x or later.

To enable remote Email Security — Server appliance alert correlation on the Central Management System appliance:
  1. Log in to the Central Management System CLI.

  2. Go to CLI configuration mode:

    hostname > enable
    hostname # configure terminal
  3. Enable remote Email Security — Server alert correlation:

    hostname # (config) remote-correlation enable
  4. Review the remote Email Security — Server alert correlation configuration settings:

    hostname # (config) # show remote-correlation status
  5. Save your changes:

    hostname (config) # write memory