To configure the SMTP settings, perform the following subtasks:
Specify the SMTP server.
Set the default SMTP notification settings.
(Optional) Set authentication for SMTP notification settings.
(Optional) Set preferences for SMTP notifications.
Go to CLI configuration mode:
hostname > enablehostname # configure terminalEnable email notifications:
hostname (config) # fenotify email enableSet the mail relay address used to send the email notifications:
hostname (config) # fenotify email mailhub address <ip_address>Set the mail port used to send the email notifications:
hostname (config) # fenotify email mailhub port <port-number>Save the configuration.
hostname (config) # write memory
Go to CLI configuration mode:
hostname > enablehostname # configure terminalEnable email notifications:
hostname (config) # fenotify email enableSet the domain from which emails appear to come:
hostname (config) # fenotify email domain <email-domain>(Optional) To include the hostname in the return address for email notifications:
hostname (config) # fenotify email return host-name <host_name>Set the user name in the return address for email notifications (the default is
do-not-reply):hostname (config) # fenotify email return user-name <user_name>Specify the default format for notifications as JSON Normal format. To send notifications in JSON Normal format containing detailed information and abstracts such as alert type, ID, source IP, malware name, hostname, and alert URL without any redundant information, enter:
hostname (config) # fenotify email default format json-normalSpecify how the notification is delivered by default:
To deliver the notification as an email attachment, enter:
hostname (config) # fenotify email default send-as attachmentTo deliver the notification in the email body (the default), enter:
hostname (config) # fenotify email default send-as in-line
Specify the default delivery schedule for notifications to receive information about each event, sent when the event is triggered. Enter:
hostname (config) # fenotify email default delivery per-eventSave the configuration:
hostname (config) # write memory
Go to CLI configuration mode:
hostname > enablehostname # configure terminalEnable email notifications:
hostname (config) # fenotify email enableEnable authentication for event mail notifications:
hostname (config) # fenotify email mailhub auth enableSet the authentication method you want to use to send event mail notifications. Available methods include
PLAIN,LOGIN, orCRAM-MD5.hostname (config) # fenotify email mailhub auth auth-method PLAINSet the username required to authenticate sending event email notifications:
hostname (config) # fenotify email mailhub auth username <username>Set the password required to authenticate sending event email notifications:
hostname (config) # fenotify email mailhub auth password <password>
Go to CLI configuration mode:
hostname > enablehostname # configure terminalEnable email notifications:
hostname (config) # fenotify email enableEnable From: line override for event mail notifications:
hostname (config) # fenotify email mailhub preferences from-line-override enableSet the minimum SSL protocol version required to send event mail notifications through SMTP. The following versions are supported:
ssl3: SSLv3 or higher is required.tls1: TLSv1 or higher is required.tls1.1: TLSv1.1 or higher is required.tls1.2: TLSv1.2 or higher is required.
hostname (config) # fenotify email mailhub preferences ssl-min-version <ssl-min-version>(Optional) Set the TLS certificate authority file for event mail notifications going through SMTP. You can choose filenames under the
/etc/pki/tls/certs/directory.hostname (config) # fenotify email mailhub preferences tls-ca-file <tls-ca-file>The following example sets the TLS certificate authority file for event mail notifications to
ca-bundle.crt:hostname (config) # fenotify email mailhub preferences tls-ca-file <ca-bundle.crt>(Optional) Set the TLS certificate file for event email notifications going through SMTP. You can choose filenames under the
/etc/pki/tls/directory.hostname (config) # fenotify email mailhub preferences tls-cert-file <tls-cert-file>The following example sets the TLS certificate file for event mail notifications to
cert.pem:hostname (config) # fenotify email mailhub preferences tls-cert-file <cert.pem>Enable TLS certificate verification for the SMTP relay used for event email notifications:
hostname (config) # fenotify email mailhub preferences tls-cert-verify enableEnable the TLS security protocol for the SMTP relay used for event email notifications:
hostname (config) # fenotify email mailhub preferences tls enableEnable the STARTTLS security protocol for the SMTP relay used for event email notifications:
hostname (config) # fenotify email mailhub preferences use-start_tls enable