Enabling the Checks
Connecting a Microsoft account imports the data; you still choose to run the SNDS checks by enabling them on your Monitoring Profiles, under RBL Monitoring ➡️ Manage ➡️ Monitoring Profiles ➡️ Data Sources.
The SNDS checks apply to IP and CIDR hosts and appear for any premium account, whether or not a Microsoft account is connected yet, so you can enable them ahead of time. This is done by default if your Monitoring Profiles stay in sync with our default settings. If you have customized a profile, enable it manually.
How alerts work
We check each monitored IP against the most recent SNDS data and IP status. An IP that Microsoft flags with an abnormal status (for example blocked, bot, or junked), or whose filter result indicates a problem, is reported on the host like any other listing.
Because SNDS data is sampled and can lag, an alert resolves automatically once a healthy status is imported. An IP with no SNDS data simply produces no alerts.