If logging of audit events and modified settings is enabled in Event Log settings, when general settings in the Rules → Message processing rules → relevant rule → General section are edited, detailed information about the changes is recorded in an Audit Log event.
The following table shows how the general settings of a rule are coded in an Audit Log record.
General → Rule info
Codes of common rule settings on the General → Rule info tab in the audit event record
Setting in the rule on the General → Rule info tab |
Code in the audit event record |
Examples |
|---|---|---|
Status |
Possible values:
|
Rule created:
priority[][2]
Rule deleted:
|
Name |
|
|
Description |
|
|
Mode |
Possible values:
|
|
Priority |
Possible values: a number corresponding to the priority of the rule in the rule list. For example, if there are only four rules and the priority of the rule is before rule with priority 4, the Changing the priority of a rule changes the priorities of all other rules. The audit event logs a change of priority only for that rule in which the priority was changed by the administrator. |
Codes of common rule settings on the General → Senders and recipients tab in audit event record
Setting in the rule on the General → Senders and recipients tab |
Code in the audit event record |
Examples |
Sender → Apply rule to sender addresses |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Sender → Email |
Adding or removing an email address is represented by pairs of records: one record for the record type, which has the value of
If the email address is modified, the modification is represented by a single record of the following form:
Where N is the serial number of the pair in the list of pairs. If the serial number of a pair changes, the modifications of the pair are represented by a single record of the following form:
|
Rule created:
Rule modified:
Rule deleted:
|
Sender → IP |
Adding or removing an IP address is represented by pairs of records: one record for the record type, which has the value of
If the IP address is modified, the modification is represented by a single record of the following form:
Where N is the serial number of the pair in the list of pairs. If the serial number of a pair changes, the modifications of the pair are represented by a single record of the following form:
|
Rule created:
Rule modified:
Rule deleted:
|
Sender → LDAP: DN |
Adding or removing an LDAP:DN is represented by pairs of records: one record for the record type, which has the value of
If the LDAP:DN is modified, the modification is represented by a single record of the following form:
Where N is the serial number of the pair in the list of pairs. If the serial number of a pair changes, the modifications of the pair are represented by a single record of the following form:
|
Rule created:
Rule modified:
Rule deleted:
|
Recipient → Email |
Adding or removing an email address is represented by pairs of records: one record for the record type, which has the value of
If the email address is modified, the modification is represented by a single record of the following form:
Where N is the serial number of the pair in the list of pairs. If the serial number of a pair changes, the modifications of the pair are represented by a single record of the following form:
|
Rule created:
Rule modified:
Rule deleted:
|
Recipient → LDAP: DN |
Adding or removing an LDAP:DN is represented by pairs of records: one record for the record type, which has the value of
If the LDAP:DN is modified, the modification is represented by a single record of the following form:
Where N is the serial number of the pair in the list of pairs. If the serial number of a pair changes, the modifications of the pair are represented by a single record of the following form:
|
Rule created:
Rule modified:
Rule deleted:
|
Codes of common rule settings on the General → Macro tab in the audit event record
Setting in the rule on the General → Macro tab |
Code in the audit event record |
Examples |
Process attachments with macros |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Action |
Possible values:
|
|
Place original message in Backup |
Possible values:
|
|
Text to add to message subject |
|
Codes of common rule settings on the General → Exclusions tab in the audit event record
Setting in the rule on the General → Exclusions tab |
Code in the audit event record |
Examples |
Do not scan archives |
Possible values:
|
Rule created:
Rule modified:
Rule deleted:
|
Do not scan attachments by name masks |
|