Koldov Posted November 1, 2023 Posted November 1, 2023 Sorry yet another post about Google Workspace... Not long ago I finally thought I'd got my head around O365 quarantine and adding the rules, changing the default behaviours etc. Then it was decided we were going to move to GMail... I have found where the quarantine section is, but looking through the emails, I can't work out why most of them are there! I've expanded the section for the 'Matched Rule' and it doesn't actually give me any information. I also can't seem to work out where these 'rules' are and what they contain...
jthompson Posted November 1, 2023 Posted November 1, 2023 The built-in spam/phishing rules in Gmail are kept deliberately opaque by Google, I think. If you were to add some specific rules of your own that directed mail into a quarantine, then you would likely see those rule names listed in the matching info. Here's an example of a message quarantined by one of the built-in rules (we have enhanced spam settings turned on). And here's one quarantined by a custom rule (a rule named "Students - Quarantine Twitter"). Doesn't really explain why you're not seeing any rule name there. Maybe a browser page issue? Clear cache or test in a private window? 1
Koldov Posted November 2, 2023 Author Posted November 2, 2023 (edited) If you were to add some specific rules of your own that directed mail into a quarantine Great, but where are the settings to do that? I've looked a few times now and can't find anywhere to set any rules... Doesn't really explain why you're not seeing any rule name there. Maybe a browser page issue? Clear cache or test in a private window? Thanks, I will look into that. EDIT: Just tried in an incognito window and still no rule description... Edited November 2, 2023 by Koldov
jthompson Posted November 2, 2023 Posted November 2, 2023 Great, but where are the settings to do that? I've looked a few times now and can't find anywhere to set any rules... Admin > Apps > Google Workspace > Gmail > Compliance > Content compliance. Create rules there (they can either be at the root or at a specific OU). Rules include an option to quarantine matching messages. A rule can be set as disabled, but then overridden to be enabled at a child OU (or vice versa), which offers another layer of logic to rule building. 1
jthompson Posted November 2, 2023 Posted November 2, 2023 Am seeing a smiilar lack of matching details on quarantined messages. Not exactly as you've shown in your screenshot, but here's a couple of examples: one shows a matching reason (albeit lacking in informative specifics) with another being blank. 1
Koldov Posted November 2, 2023 Author Posted November 2, 2023 Yeah that top one in the screenshot is what I get for all of mine, but at least it's not just me doing something stupid because I have no idea what I'm doing!
Koldov Posted January 11, 2024 Author Posted January 11, 2024 Just a follow up and possibly an answer of sorts... https://www.googlecloudcommunity.com/gc/Workspace-Q-A/Why-am-I-unable-to-see-the-specific-rule-that-triggered-an-email/m-p/429092 It's from a while ago, so Google obviously didn't 'fix' it or even see it as broken... but at least I know now it isn't something I've done (or am not doing)... Something about, if it matches one of the basic/default 'Safety Features' rather than a particular 'rule' maybe (as we don't have any 'rules' set-up) there isn't any rule description to report a match to?
Koldov Posted January 17, 2024 Author Posted January 17, 2024 Also, this... "Important: Source and matched string are displayed when available. Gmail makes a best effort to display the rule associated with a message, but some messages may not display a rule."
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now