-
Elements Collaboration Protection - Quarantined Emails Goes Back to Quarantine After Release
Issue: Quarantined emails goes back to quarantine immediately after released. Resolution: If verified False Positive, do Report the detection as a False Positive. Or create an exclusion as per steps; * Under Policies go to Real Time Scanning * Go to Malware Scanning * At the Scan Files option select "All, except excluded"…
-
How to add a website URL to trusted websites in Elements Collaboration Protection?
Issue: Is there a way to add a website URL to trusted websites in Elements Collaboration Protection? Resolution: It is possible to add a website URL to the trusted websites list within the Elements Collaboration Protection policy settings. Follow this instruction: 1. Log on to the WithSecure Elements portal 2. Go to…
-
Certain attachments are blocked by Elements Collaboration Protection due to disallowed content.
Issue: We have certain email attachments are blocked by Elements Collaboration Protection due to disallowed content. The files are clean and how do we solve it? Resolution: To resolve the blocked attachment due to the "Disallowed content" verdict, you can either allow the file extension or add the trusted sender email…
-
Is there any way to filter quarantined files by file name or URL in Exchange on Elements Collaboration Protection?
Issue: Is there any way to filter quarantined files by file name or URL in Exchange on Elements Collaboration Protection? It seems that other cloud services like SharePoint, OneDrive and Teams have a filter by file name, but there's no such filtering rule for Exchange. Resolution: Unfortunately it is not possible to filter…
-
How is severity of detection determined on Elements Collaboration Protection?
Issue: How is severity of detection determined on Elements Collaboration Protection? Resolution: Severity level indicates whether an administrator action is needed to mitigate the immediate risk. Low: No action is needed because the item is coming from a trusted source. Medium: No action is needed. The item was…
-
Microsoft Excel, Word and PowerPoint files including malicious URL are detected in SharePoint, OneDrive and Teams on Elements Collaboration Protection
Issue: Microsoft Excel, Word and PowerPoint files including malicious URL were detected in SharePoint, OneDrive and Teams. Malicious URL in text file(.txt) was not detected. Also, malicious URL shared in teams chat was not detected. Are these all expected bahavior? Resolution: This feature was implemented in our Security…
-
How to add trusted email sender in Elements Collaboration Protection?
Issue: How to add trusted email sender in Elements Collaboration Protection? Resolution: * On the Policies page, select the policy you want to modify. * Select the Exchange tab. * Under Trusted senders, do the following to add trusted senders.* Select ON. * Select Scan and create a low severity alert for trusted senders…
-
Maximum number of URLs that can be configured Exchange > URL scanning in Collaboration Protection
Issue: Maximum number of URLs that can be configured Exchange policy in Collaboration Protecion Policies > Exchange > URL scanning > Trusted websites > Websites Policies > Exchange > URL scanning > Blocked websites > Websites Resolution: There is no maximum number of URLs. but there is an limit for the entire policy…
-
How to report a false positive or negative for Elements Collaboration Protection
Issue: How to report a false positive or negative for Elements Collaboration Protection? * Harmless website / link / webpage / attachment file blocked and email has been quarantined (false positive) * Harmful website / link / webpage / attachment file has been allowed through (false negative) Resolution: If you suspect the…
-
Why is no action taken by Elements Collaboration Protection to quarantine a high severity email detection?
Issue: Why does not Elements Collaboration Protection automatically quarantine a high severity email detection, but an email with a medium severity detection is quarantined? Resolution: The Elements Collaboration Protection Severity level indicates whether an administrator action is needed to mitigate the immediate risk. *…