Target
This article is intended for administrators who are responsible for the initial configuration and operational management of HENNGE Cloud Protection.
Purpose
This section describes the settings for [URL scanning], which is an item that can be configured in the HENNGE Cloud Protection policy.
Caution
1. The content of this article is based on product specifications as of October 2022 and is revised accordingly without advanced notice.
2. The following procedures require HENNGE Cloud Protection admin permissions.
3. Policies can only be specified on a per-tenant basis.
Details / Procedures
This article describes the values that can be set in [Policies] - select Policy - [Exchange] - [URL scanning] in the left menu of the HENNGE Cloud Protection administration page.
1. URL Scanning On / Off
Set whether or not to use the URL scanning function.
It is enabled by default.
2. Malicious URL
Specify the action to be taken when malicious URLs are detected.
Possible actions are below:
・Move item into quarantine
・Delete item
・Change Subject and unlink URLs
・Take no action
Default value is [Move item into quarantine].
Notify the administrator
Notify the administrator when malicious URLs are detected.
Default value is "on".
Please set the administrator Email Address in Policy [General] − [Notifications] − [Recipient email addresses].
Notify users about detections with the following severities: Medium, High & Critical
Set whether or not to notify users when malicious URLs are detected.
This notification will be sent depending on the configuration under [Notifications] - [User notifications based on severity].
The default value is on, and the default value for [User notifications based on severity] is [Medium, High & Critical].
In addition, the [Configure notification text] link allows you to edit the notification Email template.
3. Suspicious URL
Specify the action to be taken when suspicious URLs are detected.
Possible actions are below:
・Move item into quarantine
・Delete item
・Change Subject and unlink URLs
・Take no action
The default value is [Move item into quarantine].
Notify the administrator
Notify the administrator when suspicious URLs are detected.
The default value is "on."
Please set the administrator Email Address in Policy − [Notifications] − [Recipient email addresses].
Notify users about detections with the following severities: Medium, High & Critical
Set whether or not to notify users when suspicious URLs are detected.
This notification will be sent depending on the configuration under [General] - [Notifications] - [User notifications based on severity].
The default value is on, and the default value for [User notifications based on severity] is [Medium, High & Critical].
In addition, the [Configure notification text] link allows you to edit the notification Email template.
4 Trusted websites
Set the websites to be excluded when scanning for harmful websites.
It is disabled by default.
Allow reporting of trusted websites to WithSecure
If this value is checked, trusted website data on your system will be reported to WithSecure to improve the accuracy of the system.
5. Blocked websites
Set the websites to be blocked when scanning for harmful websites.
It is disabled by default.