<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can I block malicious files sent via email ? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-block-malicious-files-sent-via-email/m-p/173742#M54653</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/71563"&gt;@Psrivastava&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Look at the WildFire verdict actions, specifically on SMTP. If you are using webmail then no, but if you see the actual SMTP traffic then maybe.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The one thing to keep in mind here is that the attachments are usually randomized and therefore get sent to WildFire to recieve a verdict, and in that time it will be delievered so in&amp;nbsp;&lt;EM&gt;most&lt;/EM&gt; cases you won't have a chance to stop the message until it's already been delivered. You also have to ask yourself if you really want to risk false positives getting blocked by WildFire and your firewall, as there is no way to recover the message at that point, where on a mail filtering device you would have the abiliity to manually deliver said message.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 29 Aug 2017 21:11:31 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2017-08-29T21:11:31Z</dc:date>
    <item>
      <title>Can I block malicious files sent via email ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-block-malicious-files-sent-via-email/m-p/173733#M54652</link>
      <description>&lt;P&gt;If my organization users send or receive emails (internal or external) with malicious file attachments , will I be able to block such emails using PAN firewall file blocking features &amp;nbsp;? I think Microsoft O365 already creates an encrypted channel so the email attachments or contents&amp;nbsp;&amp;nbsp;are protected until the files are manually downloaded by user.&lt;/P&gt;&lt;P&gt;Will SSL decryption helps in this scenario ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Aug 2017 20:56:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-i-block-malicious-files-sent-via-email/m-p/173733#M54652</guid>
      <dc:creator>Psrivastava</dc:creator>
      <dc:date>2017-08-29T20:56:46Z</dc:date>
    </item>
    <item>
      <title>Re: Can I block malicious files sent via email ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/can-i-block-malicious-files-sent-via-email/m-p/173742#M54653</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/71563"&gt;@Psrivastava&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Look at the WildFire verdict actions, specifically on SMTP. If you are using webmail then no, but if you see the actual SMTP traffic then maybe.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The one thing to keep in mind here is that the attachments are usually randomized and therefore get sent to WildFire to recieve a verdict, and in that time it will be delievered so in&amp;nbsp;&lt;EM&gt;most&lt;/EM&gt; cases you won't have a chance to stop the message until it's already been delivered. You also have to ask yourself if you really want to risk false positives getting blocked by WildFire and your firewall, as there is no way to recover the message at that point, where on a mail filtering device you would have the abiliity to manually deliver said message.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Aug 2017 21:11:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/can-i-block-malicious-files-sent-via-email/m-p/173742#M54653</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-08-29T21:11:31Z</dc:date>
    </item>
  </channel>
</rss>

