Document toolboxDocument toolbox

Encrypted content detection settings

In the Encrypted content detection settings dialog, there is possible to set the parameters of the encrypted content detection engine. Specifically:

Maximum file size limit

Specifies the maximum file size for which to perform the check by the engine. The check is done in memory and in case of archives and other containers their whole contents are extracted into the memory. Therefore we do not recommend to set this value higher than approximately 10% of server’s memory.

Treat oversize as clean

If this is enabled and the check is skipped because the file is too big, the file is considered “clean” (like if the check was performed and found no problems). If this is disabled, then such file is considered “unclean” (like if the check was performed and found a problem) and the whole package will be either quarantined or flagged, see below.

Do not block, only mark

If this is enabled and some file is detected as encrypted, it is only flagged. If this is disabled, such file is quarantined.