I ran tests before moving my mx records to Sophos Mail Gateway. That worked like a charm and it is good to see viruses being caught.
The XG is still in MTA mode. Email Gateway is configured for inbound only and set to deliver to the XG Alias.
The DNS records have now been changed for production but I am seeing some messages that have a failed delivery status DSN code 5.0.0. Before all messages were delivered.
The reason the Sophos XG gives for the rejection is other. That doesn't tell me much. Are there to many connections from one host? Before I didn't see any failed delivery. I removed the DoS settings to check.
I added the Sophos mail servers to the Upstream Relay Hosts.
Could it be TLS issues between the XG and Sophos?
As DNS is not completely propagated over the Internet I can not yet remove all inbound check settings and lock the XG down to only allow SMTP from the Sophos servers. In order to troubleshoot I have removed the spam and spf checks.
In Email Gateway I am not seeing any queues for messages that could not yet be delivered and are queued for a resend and the possibility to resend. Doesn't Sophos Email Gateway have that functionality? I read in a post that Email Gateway will try for 14 days and then give up. There is no delay message?
TIA,
Fred
This thread was automatically locked due to age.