Operating Principles

The component can protect email messages by setting up proxy that performs scanning of emails transferred via SMTP, POP3 or IMAP4 protocols transparently for the mail server. To set up this scanning method, SpIDer Gate and Dr.Web Firewall for Linux are used. As these components operate only with GNU/Linux, this method is available only for this family of operating systems.

The component uses the processing rules determined in the settings of Dr.Web Firewall for Linux.

For scanning the URLs in email messages, the same databases of web resource categories as in SpIDer Gate component, are used. Dr.Web CloudD component is used to refer to Dr.Web Cloud service (the use of the cloud service is configured in Dr.Web Security Space common settings and can be disabled, if necessary). To check transmitted data, Dr.Web MailD uses the Dr.Web Network Checker component. The latter one initiates scanning via the Dr.Web Scanning Engine scan engine.

Scanning email attachments for malicious code is performed directly by Dr.Web MailD.

For messages analysis on presence of signs of spam, Dr.Web MailD uses the special component Dr.Web Anti-Spam.

Depending on the distribution, Dr.Web Anti-Spam can be unavailable in Dr.Web Security Space. In this case, email messages will not be scanned for signs of spam.