Cloud Email Protection Overview

The Overview page is a unique visualization of the risk overview of your organization's inbound email traffic. The Fortra Cloud Email Protection (CEP) provides you with valuable insights into your organization's incoming email traffic, including the number of email threats received, whether these messages were moved, junked, quarantined, or deleted. It also shows what types of attacks the emails contained. This information enables you to gain a clear understanding of your organization's email security.

Quadrants on the overview page.
Cloud Email Protection Overview page

The Overview page shows the following information:

1 You can filter and view the Email traffic report for Today, last 7 days, last 30 days or last 60 days.
2

Edit -Click to customize the Overview dashboard items to suit your organization needs. See Customize Overview Dashboard.

3

Email Threats: This is a unique count of all messages detected as a threat by CEP across all detection mechanisms. Messages detected by multiple methods are only counted as a single detection in this count.

4

Messages Enforced: This is a unique count of all messages enforced by CEP across all enforcement mechanisms, but does not include “Inbox” actions. This count includes messages enforced by your on-demand policies, policies, and custom CDR rules. Click on the enforcement type to view the list of messages with that enforcement action.

5 - 8

The tile displays the top 8 recipients of the selected Attack type, Targeted Executives or Malicious Domains for the chosen time period. The different attack types displayed are :

  • Top Malicious Email Recipient
  • Top Brand Imposters
  • Top Domain Spoofs
  • Top Executives
  • Top Malicious Recipients
9

Messages Over Time: For the selected period of time, Message Over Time displays the count of messages received per day. The bar chart displayed is based on the filter option selected.

The options are:

  • Per Attack Type (Default Option): The Per Attack Type option is a stacked bar chart. The label at the bottom corresponds to a matching color in the bar for the type of Attack. Hover over a bar to view detailed counts for that day. Additionally, clicking on one of the colored sections will direct you to the search page, where the filters will be automatically populated based on the selected date range and attack type.
  • Per Enforcement Type : The Per Enforcement Type option is a stacked bar chart. The label at the bottom corresponds to a matching color in the bar for the type of enforcement action. Hover over a bar to view detailed counts for that day. Additionally, clicking on one of the colored sections will direct you to the search page, where the filters will be automatically populated based on the selected date range and enforcement action.
  • All Messages - For the selected period of time, All Messages option displays the count of messages received per day as a simple green bar chart. Hover over a bar to view detailed counts for that day. Click the bars within the graph to open the search messages page with the relevant messages pertinent to the data represented in the graph.

10

Inbound Messages (Identified by ML Attack Type): Shows the number of threat messages classified by the Machine Learning analysis of your inbound email traffic. It's important to note that these classifications are not unique counts, meaning that a single message can be classified and counted in multiple categories. Therefore, you should not try to sum these numbers to match the total Email Threats. To see all the messages that match a particular Attack Type, click on that attack type in the Inbound Messages (Identified by ML Attack Type) Bar chart.

11 CDR Messages Discovered: Shows the number of threat messages detected by IOCs or rules in Continuous Detection and Response. It's important to note that these classifications are not unique counts, meaning that a single message can be classified and counted in multiple CDR events and attack classes. Therefore, you should not try to sum these numbers to match the total number of Email Threats. Select on CDR Feed type to see more details about the emails based on the feed type selected.
12

Displays the total number messages with Active CDR Custom Rules for the chosen time period and the total number of Active rules for the same time period.

TIP: To view this data on the Dashboard click Edit and select the Customer CDR option in the Add Dashboard Item popup window.