It seems like your browser didn't download the required fonts. Please revise your security settings and try again.


As of March 1, 2022, the legacy Barracuda Essentials Security, Compliance, and Complete editions are no longer available for purchase. Only existing customers can renew or add users to these plans.

Following October 30, 2022, the documentation and trainings will no longer be updated and will contain outdated information.

For more information on the latest Email Protection plans, see Barracuda Email Protection.

To update your bookmarks, see the following for the latest documentation and trainings:

Note that MSP customers should continue to follow Barracuda Essentials for MSPs.

Filtering the Message Log

  • Last updated on

The Message Log is a log of all inbound and outbound messages that are sent to and from your domain(s), regardless of whether they were delivered. Each time an attempt is made to send mail to or from your domain(s), it is recorded in the Message Log.

Use simple search to run a fast search based on a word, search pattern, or phrase. Use advanced search to further filter or search for specific messages.

Simple Search


  1. In the Message Log, next to Message Filter, select either Inbound or Outbound.
  2. From the drop-down menu, select AllAllowedUI DeliveredNot AllowedBlockedEmail ContinuityQuarantined, or Deferred messages.
  3. Enter a whole (not partial) word, search pattern, or phrase in the Search box in the form described below. Using the field name is not necessary, but narrows the search. So, for example, if you search on, the From, To, and Subject fields of the message are all searched.
    • IP_address
      Example: ip:
    • Message_id
      Click on the message, and click Show Details to find the message_id. Use this format in the Search box: message_id:
      Example: message_id:1374102064-320627-22657-10347-7
    • Attachment filename
      Use this format in the Search box: attachment:
      If the attachment filename contains spaces, you can represent the space with %20 or enclose the filename in single or double quotation marks.
      Example: To search for an attachment titled Blue Skies.txt, type any of the following:
      • attachment:Blue%20Skies.txt or
      • attachment:"Blue Skies.txt" or
      • attachment:'Blue Skies.txt'
    • Spam
      This filter operates on messages determined by the Barracuda Email Security Service to be Spam. To display messages identified as Spam, enter this in the Search box: filter:spam
    • Envelope_from
      Example: or
    • Header_to
      Example: or
    • Subject
      Example: subject:Tomorrow or Tomorrow
    • Score_lt(e)
      Example: score_lt:5.2 lists all messages where the score is less than 5.2.
      Example: score_lte:3.0 lists all messages where the score is less than or equal to 3.0.
    • Score_gt(e)
      Example: score_gt:6.8 lists all messages where the score is greater than 6.8.
      Example: score_gte:2.5 lists all messages where the score is greater than or equal to 2.5.
    • Size_lt
      Example: size_lt:500 lists all messages where the size, including attachments, is less than 500 bytes.
    • Size_gt
      Example: size_gt:1000 lists all messages where the size, including attachments, is greater than 1000 bytes.
    • Delivery status
      DeliveredDeferredNot_DeliveredSpooled. Use this format in the Search box: delivery_status:<delivery status>
      Example: delivery_status:deferred
  4. Select the Domain and Time Range, and click Search. All fields are searched based on your criteria, so you may get a larger set of messages returned than you wanted.

Advanced Search


To further filter or search for specific messages, click Advanced Search to display the Advanced Search options. To hide these options, click Advanced Search again. To remove a search value, click Clear. Select or enter a word or phrase to search on in one or more of the following fields, then click Search.

  • From
    Sender email address (this may not match the address in the headers that mail clients display to an end-user).
  • To
    Recipient email address(es).
  • Envelope From
    This is the (sender) email address to which bounce messages are delivered. This field is also sometimes known as envelope fromenvelope senderMAIL FROMreturn address, and other names. All of these names refer to the email address found by the SMTP MAIL FROM command. The Envelope From field contents are generally not seen by the email user.
  • Envelope To
    The real destination email address.
  • Subject
    Messages where any portion of the "Subject:" field contains the specified text.
  • Action
    Limit to AnyAllowedBlocked,QuarantinedEncrypted or Deferred messages.
  • Reason
    Messages with Actions taken for the selected Reason. For a description of reasons, see Message Actions.
  • Delivery Status
    Limit to AnyDeliveredNot DeliveredDeferredRejected, or Spooled.
  • Start Date, End Date
    Use to limit date/time range of message search results. Examples:
    • To view 10 minutes of results
      Start Date: 2016-10-01 12:00am    End Date: 2016-10-01-12:10am    Returns messages from 12:00 AM through 12:09 AM, not including 12:10 AM.
    • To view a 7 day range
      Start Date: 2016-09-24 12:00am    End Date: 2016-10-01 12:00am
    • To view yesterday's messages through today
      Start Date: Yesterday   End Date: blank   (leave the End Date field blank)
  • Attachment
    Attachment file name.
  • Results
    Limit result set to a maximum of 25, 50, 100, 150, or 200 messages.