This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG and email

Hi folks,

email on the XG is a contentious issue to a number of people, me included.

My XG email notifications is setup in legacy mode.

What works

1/. daily backups

2/. daily reports.

 

What does not work

1/. notifications

QUEUED for scanning but never sent since MR-4

The XG mail messages are all sent using smtp according to the daily report regardless that the notifications setting is configured to use either 465 or 587 with either SSL or TLS.

 

User email

My wife and I have 6 email addresses on 3 different email servers. The software is MS-OUTLOOK on one MBP, MAC mail on two MBPs, iPad and iPhone. One MBP uses MAC mail and outlook.

I have a business rule to scan IMAPS. SMTP and SMTPS which point at the various email servers.

Recently the email system failed along with other functions on the XG which I have not been able to replicate. 

Previously I had spent considerable time investigating why email did not work reliably on the various devices. Eventually I was able to get email working stably on all devices. After the recent issues one of my my wife's outlook accounts would no longer send mail. Errors include, fail to connect, server timeout, server does not use secure connections, serve does not respond.

I have not been able to identify any failed messages in the XG logs.

I have temporarily used one ISP mail server for all out going messages, this only works behind the XG, once we go on holidays I have to reset the send accounts to the correct servers otherwise their mail fails because of external relay not allowed.

I have tried using using various ports 465 and 587. XG business rule does not recognise 587 as a valid email port. According to the RFC 587 is the valid port and 465 was an interim port. You are not able to change which ports are support by the mail scanning business rule.

The various mail servers use 4675 with SSL or 587 with TLS.

There will be another post in this thread shortly covering mail reporting.

Ian



This thread was automatically locked due to age.
Parents
  • Email scanning seems problematic for me too. I have another post regarding an issue I'm having with not being able to send any emails out from Sophos XG itself using an external email server.

    On a different note, I'm a bit confused if Sophos XG is actually doing anything for my emails. I have the Transparent Proxy mode setup and in the Log Viewer, I can see email traffic being scanned and marked as clean or spam. However, when I reference this article (https://community.sophos.com/kb/en-us/133882) and check my email message headers, I do not see anything related to X-CTCH-* or Sophos. Does this only occur in MTA mode?

    I've also noticed in the "spam" policy in the Email settings it mentions anything marked as spam should have an action of adding a Prefix subject of "Spam:", but I never see that occur despite seeing emails being marked as spam in the Log Viewer. For what it's worth, my mail traffic summary looks similar to rfkat_vk's.

  • Hi Shred,

    the XG has actually caught a virus in one of my wife's messages sometime ago. All sent messages from the XG are classified as SMTP even though the notification  is setup for SMTPS.

    This was supposed to be fixed a number  of MRs ago.

    Roll on v18

Reply
  • Hi Shred,

    the XG has actually caught a virus in one of my wife's messages sometime ago. All sent messages from the XG are classified as SMTP even though the notification  is setup for SMTPS.

    This was supposed to be fixed a number  of MRs ago.

    Roll on v18

Children
No Data