Symantec BRIGHTMAIL Installation Guide - Page 16

AntiVirus Filters, Brightmail Reputation Service Lists, Open Proxy List, Safe List, Suspect List - download

Page 16 highlights

Symantec Brightmail AntiSpam Overview to DNS lists can thus block or delete mail from these blacklisted hosts. On the other hand, administrators who subscribe to DNS whitelists can leverage a list of legitimate mail servers and senders. You can add a DNS blacklist as a third-party blocked senders list. You can add a DNS whitelist as a third party allowed senders list. - Brightmail Reputation Service Lists: By default, Symantec Brightmail AntiSpam is configured to check mail against three lists, all part of the Brightmail Reputation Service, managed by Symantec. Unlike other lists, which simply aggregate information and are frequently outdated, the Brightmail Reputation Service lists are generated and updated hourly. They are downloaded to your system and updated just like other filters. - The Open Proxy List is a dynamic database containing IP addresses of identity-masking relays, including proxy servers with open or insecure ports. Because open proxy servers allow spammers to conceal their identities and off-load the cost of emailing to other parties, spammers will continually misuse a vulnerable server until it is brought offline or secured. Symantec recommends that organizations secure their proxy servers to ensure that spammers cannot connect to open ports and relay SMTP email. - The Safe List is a list of IP addresses from which virtually no outgoing email is spam. - The Suspect List is a list of IP addresses from which virtually all outgoing email is spam. AntiVirus Filters NOTE: The following information and all other references to antivirus functions assume you have purchased antivirus filtering. Virus experts at Symantec Security Response (SSR) provide up-to-date virus definitions and engines to rid email attachments of viruses. The BLOC-through automated processes monitored by BLOC Technicians-integrates the virus definitions and engines into AntiVirus Filters, tests them, and distributes them to your site. The Brightmail Scanner-using the AntiVirus Cleaner (Cleaner)-filters the attachments of incoming email in search of viruses. If filtering detects no viruses, the message is analyzed for spam. If filtering detects one or more viruses, the policies you have set up go into effect. For example, you can instruct the Brightmail Scanner to delete the message or to clean and then deliver the message. You can also set policies potential virus messages that cannot be processed by the Cleaner. Symantec Brightmail AntiSpam also provides protection against mass-mailing worms, which can leave hundreds of spam messages in their wake. The Worm Auto-Delete feature automatically removes not only the worm but also the associated emails. This convenient feature saves users from having to wade through hundreds of inbox messages that, although clean from viruses, server no valuable purpose. 10 Symantec Brightmail AntiSpam™

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160

Symantec Brightmail AntiSpam Overview
10
Symantec
Brightmail AntiSpam™
Symantec Brightmail AntiSpam Overview
to DNS lists can thus block or delete mail from these blacklisted hosts. On the other
hand, administrators who subscribe to
DNS whitelists
can leverage a list of legitimate
mail servers and senders. You can add a DNS blacklist as a third-party blocked
senders list. You can add a DNS whitelist as a third party allowed senders list.
Brightmail Reputation Service Lists:
By default, Symantec Brightmail
AntiSpam is configured to check mail against three lists, all part of the Brightmail
Reputation Service, managed by Symantec. Unlike other lists, which simply
aggregate information and are frequently outdated, the Brightmail Reputation
Service lists are generated and updated hourly. They are downloaded to your
system and updated just like other filters.
The
Open Proxy List
is a dynamic database containing IP addresses of
identity-masking relays, including proxy servers with open or insecure ports.
Because open proxy servers allow spammers to conceal their identities and
off-load the cost of emailing to other parties, spammers will continually
misuse a vulnerable server until it is brought offline or secured. Symantec
recommends that organizations secure their proxy servers to ensure that
spammers cannot connect to open ports and relay SMTP email.
The
Safe List
is a list of IP addresses from which virtually no outgoing email
is spam.
The
Suspect List
is a list of IP addresses from which virtually all outgoing
email is spam.
AntiVirus Filters
NOTE:
The following information and all other references to antivirus functions assume
you have purchased antivirus filtering.
Virus experts at Symantec Security Response (SSR) provide up-to-date virus definitions
and engines to rid email attachments of viruses.
The BLOC—through automated processes monitored by BLOC Technicians—integrates
the virus definitions and engines into AntiVirus Filters, tests them, and distributes them to
your site.
The Brightmail Scanner—using the AntiVirus Cleaner (Cleaner)—filters the attachments
of incoming email in search of viruses. If filtering detects no viruses, the message is
analyzed for spam. If filtering detects one or more viruses, the policies you have set up go
into effect. For example, you can instruct the Brightmail Scanner to delete the message or
to clean and then deliver the message. You can also set policies potential virus messages
that cannot be processed by the Cleaner.
Symantec Brightmail AntiSpam also provides protection against mass-mailing worms,
which can leave hundreds of spam messages in their wake. The Worm Auto-Delete feature
automatically removes not only the worm but also the associated emails. This convenient
feature saves users from having to wade through hundreds of inbox messages that,
although clean from viruses, server no valuable purpose.