KSO365 is a cloud solution. It does not work in the cloud by itself but together with Microsoft Exchange Online (EOL) and its anti-spam and anti-virus protection.
In more than 95% of cases, Microsoft Forefront (Ff) performs the spam and virus scans first, due to Microsoft's cloud architecture. Thus, if Ff has identified an email as spam, virus, phishing, etc., and has done with it any action (according to the settings) except “Skip”, we do not check this email and do nothing with it. We can
Advice and Solutions (Forum Knowledgebase) Disclaimer. Read before using materials.
Version: Kaspersky Security for Exchange 9.0 MR5 (9.5.10000.64)
Scenario
The following error message appears:
"Access denied. To manage application features, the user's account must be added to one of the following Active Directory groups:
KSE Administrators
KSE AV Security Officers
KSE AV Operators
KSE Security Officers."
Solution
This error means that
It is impossible to detect .bat and .cmd files by format, because these are regular plain text files.
If you want to block attachments, you can only configure detection of these files by masks: *.bat, *.cmd.
Please check the section "Configuring the general settings and conditions of rules" of the sites https://support.kaspersky.com/KS4Exchange/9.6/en-US/166855.htm
Add a condition for the Attachment filtering rule and select File name mask instead of File format and then add *.bat