Hi,
Need some assistance.
I have a single Tier Install, setup for inline SMTP. Usinig the EU-UK Solution Pack.
Trying to test email detection of National Insurance Numbers.(wide detection)
Have setup in Reflect mode. MTA is setup to forward ALL emails to Network Prevent Server.
When I send email, I can see the following in the Network Prevent server logs
08/Oct/16:22:08:29:275+0100 [INFO] (SMTP_CONNECTION.1201) Connection accepted (tid=31 cid=be00639d-b034-4a2d-be22-8f1e13824d9d local=yyy.yyy.yyy.yyy:10025 remote=xxx.xxx.xxx.xxx:49552)
08/Oct/16:22:08:29:278+0100 [INFO] (SMTP_CONNECTION.1203) Forward connection established (tid=31 cid=23b83abc-f970-4982-b8a7-92e7f7e41285 local=yyy.yyy.yyy.yyy:3605 remote=xxx.xxx.xxx.xxx:10026)
08/Oct/16:22:08:29:281+0100 [INFO] (SMTP_CONNECTION.1204) Forward connection closed (tid=31 cid=23b83abc-f970-4982-b8a7-92e7f7e41285 local=yyy.yyy.yyy.yyy:3605 remote=xxx.xxx.xxx.xxx:10026)
08/Oct/16:22:08:29:282+0100 [INFO] (SMTP_CONNECTION.1205) Service connection closed (tid=31 cid=be00639d-b034-4a2d-be22-8f1e13824d9d local=yyy.yyy.yyy.yyy:10025 remote=xxx.xxx.xxx.xxx:49552 messages=0 time=0.01s)
So it looks to me like the Prevent server is accepting the email and reflecting it back as expected, but I dont see any incidents created.
I guess its something simple I'm missing but I cant see it.
Is there anywhere I can see where its making the decision to trigger an event or not?
Thanks all