This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG and email

Hi folks,

email on the XG is a contentious issue to a number of people, me included.

My XG email notifications is setup in legacy mode.

What works

1/. daily backups

2/. daily reports.

 

What does not work

1/. notifications

QUEUED for scanning but never sent since MR-4

The XG mail messages are all sent using smtp according to the daily report regardless that the notifications setting is configured to use either 465 or 587 with either SSL or TLS.

 

User email

My wife and I have 6 email addresses on 3 different email servers. The software is MS-OUTLOOK on one MBP, MAC mail on two MBPs, iPad and iPhone. One MBP uses MAC mail and outlook.

I have a business rule to scan IMAPS. SMTP and SMTPS which point at the various email servers.

Recently the email system failed along with other functions on the XG which I have not been able to replicate. 

Previously I had spent considerable time investigating why email did not work reliably on the various devices. Eventually I was able to get email working stably on all devices. After the recent issues one of my my wife's outlook accounts would no longer send mail. Errors include, fail to connect, server timeout, server does not use secure connections, serve does not respond.

I have not been able to identify any failed messages in the XG logs.

I have temporarily used one ISP mail server for all out going messages, this only works behind the XG, once we go on holidays I have to reset the send accounts to the correct servers otherwise their mail fails because of external relay not allowed.

I have tried using using various ports 465 and 587. XG business rule does not recognise 587 as a valid email port. According to the RFC 587 is the valid port and 465 was an interim port. You are not able to change which ports are support by the mail scanning business rule.

The various mail servers use 4675 with SSL or 587 with TLS.

There will be another post in this thread shortly covering mail reporting.

Ian



This thread was automatically locked due to age.
Parents
  • Hi  

    I understand your concern in this post and the previous post you have shared.

    Can you please try to add SMTP port for scanning?- https://community.sophos.com/kb/en-us/123120

    Please provide the screenshot of the configuration on the notification and obscure the mail address only except the domain in the email address. 

    On the XG firewall run the command nslookup -q=mx <domain> and share the output as well.

     

  • Hi Keyur,

    I have followed those instructions in the past, but repeated them again. There is an interesting issue with the mail service on the XG, it cannot resolve the FQDN of my wife web site mail server, but my MBP can resolve the the FQDN. Further I made some changes to the mail notification settings yesterday to see what would happen, the result is the daily messages are queued but never sent. The XG GUI reports show the messages as being sent.

    I have since changed the settings and the messages are delivered and again the log viewer entries are odd, some show message accepted and other just show message delivered.

    Please see screen shots below.

     

     

     

    Ian

Reply
  • Hi Keyur,

    I have followed those instructions in the past, but repeated them again. There is an interesting issue with the mail service on the XG, it cannot resolve the FQDN of my wife web site mail server, but my MBP can resolve the the FQDN. Further I made some changes to the mail notification settings yesterday to see what would happen, the result is the daily messages are queued but never sent. The XG GUI reports show the messages as being sent.

    I have since changed the settings and the messages are delivered and again the log viewer entries are odd, some show message accepted and other just show message delivered.

    Please see screen shots below.

     

     

     

    Ian

Children