Procedure
- On the IBM XGS console, do the following to configure the generic agent:
- Go to .The Advanced Threat Protection Agents window opens.
- Click New.
- Provide the following information:
-
Name: Type a name
-
Agent Type: Select Generic
-
Address: Deep Discovery Email Inspector management port IP address in IPv4 or IPv6 format
-
User name: Existing authentication credential
-
Password: Existing authentication credential
Valid Character Sets
User namePasswordMinimum length1 character1 characterMaximum length15 characters15 characters -
- Go to .
- Click Save Confirmation.The Deploy Pending Changes window opens.
- To apply changes to IBM XGS, click Deploy.The new agent appears in the Advanced Threat Protection Agents list.
- On the Deep Discovery Email Inspector management console, go to .
- Select Configuring IBM Security Network Protection (XGS).
- Under Object Distribution, select Enable.
- Under Server Settings, provide the
following information:
-
Server name
Note
The server name must be the FQDN or IPv4 address of the auxiliary product. -
User name: Existing authentication credential
-
Password: Existing authentication credential
Valid Character Sets
User namePasswordMinimum length1 character1 characterMaximum length15 characters15 characters -
- (Optional) Click Test Connection.
- To send object information from Deep Discovery Email
Inspector to this
product/service, configure the following criteria:
-
Object type:
-
Suspicious Object
-
IPv4 address
-
URL
Note
You must select at least one object. -
-
-
Risk level:
-
High only
-
High and medium
-
High, medium, and low
-
-
- Click Save.
- (Optional) On the IBM XGS console, go to Deep Discovery Email
Inspector to IBM
XGS. to view suspicious objects and C&C callback addresses sent by
Note
Suspicious objects with a low risk level do not appear in the IBM XGS Active Quarantine Rules. To view all suspicious objects sent by Deep Discovery Email Inspector, go to and specify the following settings:-
Agent Type: Generic
-
Alert Type: Reputation
-
Alert Severity: Low
Suspicious objects and C&C callback addresses distributed by Deep Discovery Email Inspector are displayed. -