Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Email Exception source networks

We are migriting SG to XGS and one missing feature is that we have to add networks to E-Mail Exceptions. E. g. we often had problems using greylisting with O365 or Google-Mail. They have lists of networks that should be excluded in the greylisting. The netmasks are /14,/15,/16. So adding each address individually is not possible.

It's really anoing that such a simple feature is missing in 18.5.2-MR2

Regards



This thread was automatically locked due to age.
Parents
  • I also experinced a lot of issues with incoming O365 mail, my solution is:

    Go to System > Hosts and Services > FQDN
    Add a FQDN Host > *.protection.outlook.com (or whatever suits your needs)

    Then go to Protect > Email > Policies & Exceptions
    Add an exception f.i. "protection.outlook.com"
    Tick the box in front of 'Greylisting'
    Add the earlier added FQDN to ' For these sources/hosts' area
    Save.

    The FQDN does however need some time tot learn and after every restart of the XG system everything is reset.

     
    SFVH (SFOS 19.5.1 MR-1-Build278)  - Last (re)boot on Februari 20 2023
    Asus H410i-plus - Pentium 6605 Gold - 250GB M.2 PCIe NVMe SSD - 8GB - 3 ports
    [If any of my posts are helpful to you please use the 'Verify Answer' link]
  • Thanks for the suggestion.

    But that is not all we need. The main problem is that after all these years such simple functions are still missing in XG/XGS.

  • Greylisting is a feature of the past. I would recommend to disable greylisting for certain reasons. The advantages are not there compared to the modern world.

    That is the reason, Sophos Email in Central is not doing Greylisting in the first place. Using RBLs and other techniques are better going forward compared to greylisting. 

    __________________________________________________________________________________________________________________

  • That's ok for greylisting. But I primarily meant the missing function (thread title). What if I have to do exceptions for RBL, Antivirus, Zeroday?

    Routing Mail through Central is not really an option for us.

Reply Children
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?