Lucy Awareness
Visit our WebsiteContact Support
  • Wiki Overview
  • Guides
    • Quick Guides
      • Create Your First Campaign
        • Adding a New Client
        • Register an Attack Domain
        • Campaign Setup
          • Selecting an Attack
          • Attack Settings
          • Awareness Settings
          • Recipients
          • Review
        • Whitelisting
    • Installing Lucy
      • On-Premise vs Cloud Installation
      • Architecture
      • Hardware Requirements
      • Network Communication
      • Installing Lucy
      • Post Installation
    • Manage Blacklisted Domains
      • Managing Google SafeBrowsing Alerts
    • Whitelisting a Lucy Server
      • Google Workspace Whitelisting
      • Microsoft O365 Whitelisting
      • File Attack Whitelisting
    • Attack Simulations
      • Attack Types
        • Data Entry Attack
        • Hyperlink Attack
        • File Attack
        • Portable Media
        • Smishing
        • Lures
        • QR Codes
        • Ransomware Emulation
        • Technical Malware Test
          • Malware Toolkit Test Suite
        • Mail & Web Filter Test
        • Email Spoofing Test
      • Attack Template Customization
      • Firewall Protection Interval
      • Email Tracking Technologies
      • Advanced Information Gathering
      • Regular Expressions in Login Fields
      • Copy a Website
      • Redirecting Users
    • Awareness Training
      • Awareness Template Customization
      • Awareness Only Campaigns
        • Using Multiple Awareness Trainings
      • Use extended method of tracking the end of the quiz
    • Reporting Plugin
      • Deploying Office 365
      • Deploying Outlook Native
      • Deploying Gmail
  • Application Screens Reference
    • Statistics Dashboard
    • Campaigns Dashboards
    • Campaigns
      • New Campaign
        • Wizard Mode
          • Selecting an Attack
          • Attack Settings
          • Awareness Settings
          • Recipients
          • Review
        • Expert Mode
      • Campaign Settings
        • Configuration
          • Base Settings
          • Awareness Settings
          • Attack Settings
          • Schedule
            • Schedule Plan
          • Recipients
        • Advanced Settings
          • User Settings
          • Filters
          • Custom Fields
          • Reminders
        • Campaign Checks
        • Logs
        • Results
          • Summary
          • Statistics
          • Reports
          • Exports
    • Templates
      • Attack Templates
      • Awareness Templates
      • File Templates
      • Report Templates
      • Campaign Templates
      • Training Diploma
      • Download templates
      • Variables in Lucy
    • Users
      • Recipient Groups
      • End Users
      • End User Portal Settings
      • Administrative Users
      • Reputation Levels
    • Settings
      • Common System Settings
        • Domains
          • Supported TLDs
        • Firewall
        • Web Proxy
        • Mail Settings
        • SMTP Servers
        • SSL Settings
          • SSL for Campaigns
        • SMS Settings
        • Filter Settings
        • API Whitelist
          • API Routes
        • LDAP Servers
          • LDAP Sync Tool
        • LDAP Settings
        • Azure Applications
        • Azure AD Settings
        • SSO Configuration
      • Advanced System Settings
        • Advanced Settings
        • SSH Password
      • Submitted Email Settings
        • Custom Rules & Score Factors
        • Abuse Reports
        • Incident Autoresponder
        • Plugin Settings
      • Clients
        • Client Invoices
        • Client Invoice Settings
      • Backup and Restore
        • Backup Settings
      • Benchmark Sectors
      • Whitelabeling
      • File Browser
    • Incidents
    • Support
      • Status
        • Status
        • System Monitoring
        • System Health Check
        • Notifications
      • System Tests
        • Test Email
        • Performance Test
        • Spam Test
        • Mail Spoofing Test
        • Mail and Web Filter Test
      • System Logs
      • Manual
      • Update
      • Reboot
      • Mail Manager
      • Terms & Conditions
    • Account Settings
      • Two Factor Authentication
      • License
      • Invoices
    • Notifications
  • Release Notes
    • 5.4
    • 5.3.5
    • 5.3.4
    • 5.3.3
    • 5.3.2
    • 5.3.1
    • 5.3
    • 5.2.1
    • 5.2
    • 5.1
    • 5.0
    • Version 4
      • 4.14
      • 4.13
      • 4.12.1
      • 4.11
      • 4.10.1
      • 4.9.5
      • 4.9.2
      • 4.9.1
  • Legal
    • EULA
    • Privacy Policy
    • DPA, Customer and Partner Info
    • Service Level Agreement
    • Confidentiality of Campaign Data
  • When to Contact Us
    • Contact Technical Support
Powered by GitBook
On this page
  • Introduction
  • Configuration
  • Preventing False Clicks

Was this helpful?

  1. Application Screens Reference
  2. Campaigns
  3. Campaign Settings
  4. Advanced Settings

Filters

PreviousUser SettingsNextCustom Fields

Last updated 11 months ago

Was this helpful?

Introduction

LUCY allows you to create filters within campaigns to control whether recipients can access the campaign. These filters, set by the campaign administrator, can be based on criteria such as mail clients, IP addresses, or IP ranges. In addition to enhancing security and targeting, filters help prevent false clicks by excluding automated systems or unintended interactions from services like Office365 ATP. This ensures that only the intended recipients can participate in the campaign, leading to more accurate statistics and effective engagement.

Configuration

Navigate to Campaign -> Advanced Settings -> Filters

Pre-defined Filters

Filters can be pre-defined and updated in the Response Filters section of the platform to enable quick filter selection in campaigns.

Select Policy

The "Allow all (default)" setting in response filters permits every recipient to access the campaign, irrespective of their IP address or browser type.

This default mode ensures that there are no restrictions on access, allowing for maximum reach and engagement with your intended audience. It's an inclusive approach, designed to facilitate widespread participation in the campaign without any preliminary filtering based on technical criteria.

When you configure a response filter to "Allow only," it permits access solely to recipients or clicks that have an IP address or use a browser aligning with the rules you establish. All other recipients, whose details do not match your specified criteria, will be blocked.

This setting is essential for creating highly targeted campaigns, where access is exclusively reserved for a predefined audience based on specific IP addresses or browser types.

When you set a response filter to "Deny for," it restricts access for recipients or bot clicks that have an IP address or use a browser matching any of the rules you specify. All other users, whose IP addresses or browsers do not match these rules, will be granted access.

This feature is particularly useful for filtering out unwanted traffic or ensuring that your campaign targets only the intended audience.

Preventing False Clicks

In networks with strict policies, filters can ensure accurate statistics gathering. For example, ATP policies for Office365 track user clicks on phishing links and rewrite suspicious URLs. Consequently, the first request to the Lucy server is made by Microsoft services, which counts as a victim's action, resulting in unreliable statistics.

To avoid this, use the filters feature to deny access to specific IP addresses belonging to Microsoft protection services. The IP ranges for O365 ATP service are 40.94.0.0/16 and 104.47.0.0/16.

Please note, IP ranges may vary from client to client, and those mentioned above are known by the LUCY team. If these policies do not work, you may need to track which IP addresses the requests are made from.

Adding Filter Rules can be combined with the built-in protection interval for the most accurate results.

Anti-Virus and Firewall