End-User Quarantine Portal (Email Security Portal)

Avanan offers an Email Security Portal for end users to access all quarantined emails. In this portal, end users can preview the quarantined emails, restore them, or submit a restore request for them - all in accordance with the defined organization's policies.

Notes:

  • The Email Security Portal only shows the quarantined emails that users can act on - either restore directly or request to restore.

  • The email's availability in the Email Security Portal depends on its metadata retention period.

  • The availability of action buttons (Restore / Request Restore) and email body depends on the raw email's retention period. For more information, see Appendix E: Data Retention Policy.

  • For Microsoft quarantined emails:

    • Taking action might fail if the email is no longer retained in Microsoft's quarantine.

    • Once restored, the email body will not be visible.

To enable the Email Security Portal for End Users:

  1. Go to Security Settings > User Interaction > Quarantine.

  2. In the Email Security Portal for End Users section, select the Email Security Portal for End Users checkbox.

  3. To allow end users to view images in the quarantined emails in the End User Portal, select the Allow users to display images checkbox in the Email Body section.

    End users can now see the Display Images button when they preview quarantined emails in the End User Portal.

  4. Click Save and Apply.

After enabling the Email Security Portal, the end users can access it from this link: https://email-security-portal.avanan.net.

Authentication Methods for Accessing the Email Security Portal

Administrators can enable end users to log in to the Email Security Portal using these authentication methods:

  • Microsoft login

  • Google login

  • One-time password login

To enable or disable an authentication method, do these:

  1. Access the Avanan Administrator Portal and click Security Settings.

  2. Go to User Interactions > Quarantine.

  3. In the Authentication section, expand Email Security Portal for End Users.

  4. Select or deselect the authentication method:

    • Microsoft login

    • Google login

    • One-time password via email

  5. Click Save and Apply.

    Note - After enabling the authorizing method (google/microsoft), an administrator must authorize the login for the entire organization by granting the necessary permission. For more information, see Authorizing Login Access for the Organization.

Authorizing Login Access for the Organization

Avanan allows users to log in to the End User Portal (Email Security Portal) with Microsoft/Google credentials. To enable this option, the administrator must authorize the login for the entire organization by granting the necessary permissions.

To authorize Microsoft/Google login permissions:

  1. Acces the Email Security Portal using https://email-security-portal.avanan.net.

  2. To allow end users to sign in using Microsoft credentials, select Sign in with Microsoft.

  3. To allow end users to sign in using Google credentials, select Sign in with Google.

  4. Enter the admin credentials.

    The Permissions requested pop-up appears for End User Portal HEC - prod application and requests for the necessary permissions. See Required Permissions for Microsoft/Google Login Authorization.

  5. To allow end users to sign in using Microsoft/Google credentials, select the Consent on behalf of your organization checkbox.

  6. Click Accept.

    End users can now sign in to the Email Security Portal using the organization's Microsoft/Google credentials.

Required Permissions for Microsoft/Google Login Authorization

Permissions required from Microsoft/Google

Functions performed by Harmony Email & Collaboration

Sign you in and read your profile Allows users to sign in to the app and allows the app to read the profile of signed-in users. It also allows the app to read basic company information of signed-in users.
Maintain access to data you have given it access to Allows the app to view and update the signed-in user data even when you are not currently using the app.