- Print
- DarkLight
Article summary
Did you find this summary helpful?
Thank you for your feedback
Zeek SMTP captures detailed information about Simple Mail Transfer Protocol (SMTP) transactions, providing visibility into email communication across a monitored network. This log includes metadata for each SMTP session, such as sender and recipient email addresses, subject lines, the size of the email, timestamp, and other relevant fields like the mail servers involved in the transmission. Zeek also parses attachments and links, offering deeper insights into email content and any potential security risks associated with them.
Was this article helpful?