Skip to content
  • There are no suggestions because the search field is empty.

Set up quarantine reports

Overview

Quarantine reports are a helpful tool that allow both admin and users to review emails that have been quarantined due to potential security risks. These reports provide visibility into quarantined messages and make it easy to take action, whether that’s releasing a legitimate email or blocking suspicious content.

  • Delivery schedule: Reports will be sent every 2 hours between 6:00am and 6:00pm (based on the user's set time zone) on weekdays.
  • No report if no activity: If there are no quarantined messages since the last report, a new report will not be sent.
  • Quick actions: Admin and users can choose to release an email, create an allow rule, or create a block rule for each email in the quarantine report.

 

Admin reports

Admins get reports that cover quarantine activity across your whole organization. Which categories appear in those reports is now set in the Quarantine Report Categories section.

Two categories still follow their own recipient rules even when selected:

  • Virus appears only for admins

  • DLP appears only for people who have the DLP notification permission.

 

User reports

Users will receive reports that only include email quarantined for their inbox. This allows users to manage their own quarantined messages without needing admin assistance.

Only users who have a Paubox dashboard login will have access to quarantine reports.

An admin chooses which categories appear, in the same Quarantine Report Categories section. Users do not receive the Virus category, and they receive the DLP category only if they have the DLP notification permission.

 

Choose which categories appear in your reports

Admins decide which mail categories show up in quarantine reports for your account. You can turn each category on or off, so reports show only what your team needs to see. Before this setting, reports used a fixed set of categories for everyone.

  1. Log in to your Paubox dashboard
  2. Go to Settings > Inbound Security
  3. Scroll to the Quarantine Report Categories section
  4. Select the categories you want to include: ExecProtect, DLP (DLP notification permission required), Geofence, Gray, Macros, Phish, Spam, and Virus (Admin role required)
  5. Click Save

Your changes apply to the next report, and reports keep sending on the same schedule.

Note: Two categories stay limited by recipient even when you select them. Virus goes only to admins, and DLP goes only to people who have the DLP notification permission. Every other selected category (ExecProtect, Geofence, Gray, Macros, Phish, and Spam) reaches everyone who receives a report.

 

 

VIP reports

VIP quarantine reports allow admin to see only specific, high-priority email addresses in the reports, vs domain-wide activity. Learn more about VIP reports.

 

Quarantine actions

The quarantine reports allow admin and users to take action on each email. These actions differ between admin and users.

  Admin report User report
Release Releases the email from quarantine and delivers to inbox Releases the email from quarantine and delivers to inbox

Allow
(not available for emails categorized DLP)

Releases the email and adds the email address to the Allow list (applies domain-wide) Releases the email and adds the email address to the user’s Allow list (applies to the user only)

Block
(not available for emails categorized DLP)

Deletes the email and adds the email address to the Block list (applies domain-wide) Deletes the email and adds the email address to the user's Block list (applies to the user only)

 

Enabling quarantine reports

To turn on/off quarantine reports:

  1. Go to the Paubox dashboard
  2. In the left navigation, click on the user name, then choose Profile
  3. Under Report settings, click edit
  4. Turn the toggle on or off under Quarantine report

 

For any questions, please contact Paubox support.