Applies to: Gateway Anti-Spam Appliance
SpamTitan Gateway is a high-performance mail filtering security suite that provides the necessary email infrastructure to meet the needs of the most demanding enterprises. SpamTitan combines a hardened operating system and an assortment of software applications and services to produce a mail firewall appliance that eliminates spam, viruses and enforces corporate email policy.
EventTracker helps to monitor events from SpamTitan Gateway. Its dashboard, alerts, and reports will help you to find detailed information on all events. Alerts determine and stop the attack and suspicious activities in real-time, and dashboards help to analyse all the security-related events in a single console. Malware and spam related to the Covid-19 pandemic is on the rise globally and spam is unsolicited email sent in bulk to unsuspecting users for commercial or malicious purposes.
EventTracker Enhances investigations by performing SpamTitan Gateway’s events and information flow data in both real-time and on a historical basis. Using the EventTracker’s alerts component we can create & tune alerts/alarms for critical events like- virus detected, will allow analysts to focus more on remediation and response efforts.
Spam is frequently used to deliver malware. Ransomware is most commonly delivered via spam, using this KP we can monitor the ongoing events related to spam and virus detection will help our analysts to create a policy, runbook to determine and stop the attack.
Using this KP we will get a deeper understanding of mail traffic running through SpamTitan Gateway. It provides a narrow understanding of mails recipient-sender, source-destination IP addresses, domain names, and action taken on the mails. We can find out the reason why a mail was not delivered and using the suspicious domain/IP address we can create a spam blacklist.
Using EventTracker’s Reports we can audit sensitive data to see who did what, when, where, and how, to satisfy audits for multiple industry regulatory requirements.
EventTracker Knowledge Pack for SpamTitan Gateway allows you to monitor the following components:
Once SpamTitan Gateway is configured to deliver events to EventTracker Manager; alerts, dashboards, and reports can be configured into EventTracker.
The configuration details are consistent with EventTracker version 9.2 and later, and SpamTitan Gateway.
To configure SpamTitan Gateway to send logs to EventTracker, refer the How to Guide.
For more information please refer the Integration guide.