This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IMAPS/POPS working, but SMTPS not!?

Hi forum,

I have tried everything I could imagine. I have a private installation of Sophos XG home, everything works fine but I cannot get email to work. Basically I would like to deactivate all Email-Stuff completely. If I deactivate the default rule being created by the appliance, I cannot reveive and send emails.

If I activate the rule and check scanning for smtps and imaps and pop3s, I can receive emails, but cannot send. Sending runs into a timeout. I have imported/accepted certificates
I have tried legacy mode and mta mode.

I have two different external email providers (freenet.de and goneo.de)
To make it more complex, freenet works like a charm (both with and without rule enabled), but goneo doesnt. Before I introduced Sophos, all worked fine.

Any good advice for helping me out?

edit: I forgot to say that using the notification functionality of Sophos in order to send system notes with the goneo.de email-adress this works. 



This thread was automatically locked due to age.
Parents
  • Hi,

    if you are using port 587 for smtps that is currently not supported by XG and you will need to create a firewall rule for that port specifically and of course create your own service.

    Assumption is you have installed the XG CA on the sending device?

    Ian

  • I did create a firewallrule. I also tried it with a any to any rule and all ports allowed. Does not work.

    Yes, I have installed the XG CA on the sending device.

     

    I even would prefer not so scann at all. But without the rule active, even pops and imaps does not work. 

    Is it possible to avoid mail protection completely?

  • Hi Michael,

    I have the mail business rule working for my IMAP/s (993) and scanning works. reporting well, I am hoping that might be fixed in v18.

    SMTP/S using port 25/456 works using SSL on the sending devices. I am using two MBPs, one running outlook 2016 and that was a pain to get working. I also run two iPhones, but only one works with scanning, incoming works reliably, but scanning SMPTs totally unreliable, keeps breaking the CA.

    So I use port 587 with SSL  and its own mail rule source LAN -> network PCs, destination  WAN networks, the ISP mail servers -> port 587.

    Does work, you can check using log viewer and the email menu.

    If you want to use IMAP/s and POP3/s just add the ports, they are in the menu to the mail rule. You will need to make sure the rule is near the top of your firewall rules.

    Ian

  • I think I already did it this way but will try it as you suggest and will keep you updated once I did. thank you!

Reply Children
No Data