Skip to main content
labiomedit
New Member
June 28, 2017
Question

Creating content filtering or DLP rule to block emails contain DEA

  • June 28, 2017
  • 5 replies
  • 7061 views

I tried to use DLP profile for alerting and blocking outbound emails which contains DEA numbers without success, it works great in office365 but after moving to on premise with fortimail it doesn't detect those emails, even my testing emails which detect with office365.

I wonder if I can create custom dictionary for DEA. the pattern is clear but there is no instruction how to config it in fortimail.

does any one use it?

 

eventually I need to detect HIPAA and DEA for outbound emails.

thank you

5 replies

labiomedit
New Member
June 28, 2017

I manage to create custom dictionary for DEA content filtering profile,

\b[a-zA-Z]{2}\d{7}$

this is the pattern for DEA.

so the content filtering is detecting DEA numbers and doing the action to stop them.

the strange thing that fortimail standard compliance doesn't work!!!!!!!!

you think DLP will be stronger than content filtering but I was wrong

Paul_S
New Member
June 29, 2017

Did you open a support ticket? What Fortimail version? any screenshots to share?

labiomedit
New Member
June 29, 2017

Yes I open a ticket and they say also their testing is not detecting the DEA numbers so I need to continue with content filtering and he will update me.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!