Skip to main content
satoh
Staff
Staff
February 17, 2026

Technical Tip: Configuring 'Email selection' for FortiSandbox URL analysis

  • February 17, 2026
  • 0 replies
  • 158 views
Description This article describes how to configure the 'Email selection' setting used by FortiMail for FortiSandbox URL analysis. Beginning with FortiMail v7.4, the setting is configured per-profile. In FortiMail v7.2, the setting is configured on a per-system basis.
Scope FortiMail v7.2, v7.4.
Solution
  • From GUI: FortiMail v7.4 (per profile).
  1. Go to Profile -> AntiVirus.
  2. Create or edit the target AntiVirus profile.
  3. Turn on URL analysis.
  4. Under URL analysis, set Email selection to 'All email' or 'Suspicious email'.
  5. Select OK.
 

pic7.4.jpg

 

  • From the GUI: FortiMail v7.2 (system wide).
  1. Go to System -> FortiSandbox.
  2. Under URL Scan Settings, set Email selection to 'All email' or 'Suspicious email'.
  3. Select Apply.

 

pic7.2.jpg


Note:

'All email' submits all qualified messages for analysis. 'Suspicious email' limits analysis to messages that meet suspicion criteria and can reduce sandbox resource usage.