Attachment and content filtering lets you filter file attachments based on specific criteria, and scan text in email messages and message subjects for prohibited words. When filtering attachments and content, Kaspersky Security scans email messages for text and file attachments that meet the specified filtering criteria and applies the action configured by the administrator to those files: deletes the attached file, deletes the entire message, or ignores the message.
Content and attachments are filtered based on individually configured rules.
Kaspersky Security can record events related to attachment and content filtering to the Windows Event Log. You can configure event recording to Windows Event Log in the Notifications node.
Kaspersky Security deletes messages and attachments without any option of restoration. It is recommended that you save copies of messages in Backup to avoid data losses. You can enable this feature in the filtering settings.
Kaspersky Security can notify you of actions performed during attachment and content filtering by email. You can configure delivery of automatic notifications in the Notifications node.
The attachment and content filtering statistics are displayed in the <Server name> node and are also added to reports for the Hub Transport role.
Attachment and content filtering is available if the Anti-Virus for the Hub Transport role component is installed on the Microsoft Exchange server.
About preventing message delays during attachment and content filtering
In exceptional cases, failures in anti-virus kernel operation may significantly increase the duration of attachment and content filtering in messages. In such cases, the Attachment and Content Filtering module temporarily switches to limited scan mode to prevent message delays. In this mode, some messages can be skipped without undergoing attachment and content filtering.