Skip to main content

Hi guys,

 

I was testing alerting yesterday & I dropped an eicar test file on one of my test servers that I current backup using ver 11.32

 

I got no alerts emailed to me but I did get the alerts in the event viewer

69:59    Possible threat found on client ixyztestfs] tcount - 3]. Check Unusual File Activity report for more detail.

 

I checked my setup and I can see the alert below, if I click test an email gets sent to me.

I also have alerts setup to mail me on the following Alert Criteria: 
(Event Code equals to 7:211 OR 7:212 OR 7:293 OR 7:269 OR 14:336 OR 14:337 OR 69:59 OR 7:333 OR 69:52) but still never got a mail.

I do alerts from the above criteria from other servers I backup. 

Any help here would be grateful.

 

Any errors that stand out in sentalerts.log?


nope, can only see the mail alerts that were received by myself


In your screenshot, you have an email under the “CC” but do you have an email address configured for the “TO” portion?


Yes, there is a distribution list address in the To. As mentioned, if I hit test both addresses get the test mail.


Reply