I don't understand the two entries below:
1) mschravenriemer@yahoo.de (whe dont'know who is) send a message dropped by firewall (nothing strange).
2) firewall@ourdomain.it send a message to mschravenriemer@yahoo.de with subject malware detected.
This is very strange.
firewall@ourdomain.it is the mail address used by XG to send notification, but it should send to an internal address not to external address.
The mail server isn't an open relay.
The frontend mail server has not recived the message.
This thread was automatically locked due to age.