If logging of audit events and modified settings is enabled in Event Log settings, when settings of the Anti-Virus module are edited in the rule, detailed information about the changes is recorded in an Audit Log event.
The following tables show how the settings of the Anti-Virus module are coded in an Audit Log record.
Codes of settings on the Anti-Virus → Infected file tab in the audit event record
Setting on the Infected file tab |
Code in the audit event record |
Examples |
|---|---|---|
Anti-Virus switch in the left pane |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Action |
Possible values:
|
|
If disinfection fails |
Possible values:
|
|
Place original message in Backup |
Possible values:
|
|
Text to add to subject of infected message |
|
|
Text to add to subject of disinfected message |
|
Codes of settings on the Anti-Virus → Scan error tab in the audit event record
Setting on the Scan error tab |
Code in the audit event record |
Examples |
Action |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Place original message in Backup |
Possible values:
|
|
Text to add to message subject |
|
Codes of settings on the Anti-Virus → Encrypted object tab in the audit event record
Setting on the Encrypted object tab |
Code in the audit event record |
Examples |
Action |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Place original message in Backup |
Possible values:
|
|
Text to add to message subject |
|
Codes of settings on the Anti-Virus → Macro tab in the audit event record
Setting on the Macro tab |
Code in the audit event record |
Examples |
Process attachments with macros |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Action |
Possible values:
|
|
Place original message in Backup |
Possible values:
|
|
Text to add to message subject |
|
Codes of settings on the Anti-Virus → Exclusions tab in the audit event record
Setting on the Exclusions tab |
Code in the audit event record |
Examples |
Do not scan archives |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Do not scan attachments by name masks |
|