Querying Logs Parent topic

You can perform queries on five types of events or information:
Message tracking
Records message details such as the sender, recipient(s), message size, and the final action that IMSS has taken. The query result also indicates the name and type of the policy rule that was triggered.
System events
Tracks the time of system events such as user access, modification of rules, registration of MCP agent and so on.
Policy events
Provides details on the policy rules that were triggered, the actions taken, and the message details.
MTA events
Provides connection details of Postfix on the local computer where the central controller is installed.
IP filtering
Provides the time when IMSS started and stopped blocking messages from the queried IP address.
For most log queries, IMSS supports wildcards (*) and exact matches (for example, to view mail recipients whose name includes A or B, set the recipient(s) to “*A*;*B*”). IMSS uses exact matching by default. Leaving the search condition blank displays all logs. For multiple-condition items, use semicolons (;) to separate the entries for recipient(s) and attachment(s).