[clamav-users] Configuration of ClamAV behavoiur

Robert.Krenn at augsburg.de Robert.Krenn at augsburg.de
Thu Oct 20 08:46:54 EDT 2016


we use clamav on an intern mailrelay with postfix. For Filesystem scanning we use additionally VSEL from McAfee / Intel. Last month we had the case that an email with an infected attachement was unpacked to /tmp/clamav-...... for scanning, but we hadn't excluded the /tmp/ directory from VSEL On-Access Scanning, so VSEL identified the infected attachment, and moved it to ist quarantine folder. This lead to an Read Error in the ClamAV scanning process on whitch end ClamAV released the attachment and it was fowarded tot he destination adress.
The question is, can I configure what ClamAV should do if it comes to an error while scanning? On VSEL for example I can configure that in case of an error it should denie access to the scanned file.  Is this also possible vor ClamAV?

Best regards

More information about the clamav-users mailing list