Threat Detection Policy for Internal Emails

Internal emails refer to emails exchanged between employees of an organization. For internal emails, Avanan applies the threat detection policy workflows of incoming emails.

By default, even if the Threat Detection policy is set to Prevent (inline) mode, it only applies to incoming emails. Internal emails are inspected in Detect and Remediate protection mode, see Fallback Workflows for Internal Traffic.

Enabling Inline Protection for Internal Emails (Office 365 Mail)

  1. Access the Avanan Administrator Portal and click Policy.
  2. Select Office 365 Mail and click on a Threat Detection policy in Protect (Inline) protection mode.
  3. Go to the Advanced Options section and select the Protect (Inline) Internal Traffic checkbox.

  4. Click Save and Apply.
    Note:
    • If you enable Protect (Inline) protection mode for internal emails in a policy, it applies to all policies in Protect (Inline) mode, including the one you are editing.

    • In rare cases, as well as when customers onboard Microsoft 365 Mail in Manual Mode, some manual changes are required in your Microsoft 365 environment before enabling inline protection for internal emails. For more information, see Inline Protection for Internal Emails (Office 365 Mail) - Manual Configuration Required.