ESET Online Help

Search English
Select the topic

Rule action

You can add actions that will be taken with messages and/or attachments that match rule conditions.


note

You can add multiple actions for one rule.

The list of available actions for Mail transport protection, Database protection and On-demand database scan (some of the options might not show up depending on your selected conditions):

Action name

Mail transport protection

Database protection

On-demand database scan

Description

Quarantine note

Set quarantine note to take if cleaning not possible.

Quarantine message

The message will not be delivered to the recipient and will be moved to the mail quarantine.

Quarantine attachment

Puts email attachment into file quarantine, email will be delivered to the recipient with the attachment truncated to zero length.

Delete attachment

Deletes a message attachment the message will be delivered to the recipient without the attachment.

Reject message

Deletes a message. For incoming emails received via SMTP a NDR (Non-Delivery Report) should be generated by the sending server.

Drop message silently

Deletes a message without generating a NDR.

Send event notification to administrator

Sends event notifications to a recipient specified in Email notifications. You need to enable Send event notification by email feature. You can then customize the format of event messages (use the tooltip for suggestions) while creating the rule. Also, you can select verbosity for event messages, however this depends on the minimum verbosity setting in Email notifications section.

Skip Antispam scan

Message will not be scanned by the Antispam engine.

Skip Antivirus scan

Message will not be scanned by the Antivirus engine.

Skip Anti-Phishing scan

Message will not be parsed by the Anti-Phishing protection.

Evaluate other rules

Allows the evaluation of other rules, enabling the user to define multiple sets of conditions and multiple actions to take given the conditions.

Log to events

Writes information about the applied rule to the program log and define the format of event messages (use the tooltip for suggestions).

Add header field

Adds a custom string to a message header.

Remove header field

Removes fields from message header according to specified parameters.

Add subject prefix

Adds a prefix to a subject.

Replace attachment with action information

Replaces attachment with a text file that contains detailed information about an action taken.

Delete note

Delete an infected note.

Move note to trash

Puts note into the trash folder on the email client's side.

Apply DMARC policy

If a DMARC result condition is met, the email message is handled according to the policy specified in the DMARC DNS record for the sender's domain.