This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG e-mail encrypt and Office 365 - Outlook client

Any ideas how to set up email encryption with O365  and Outlook clients?

 

Is this combination even possible? Any working examples available?

 



This thread was automatically locked due to age.
  • Hi,

    SPX (Secure PDF Exchange) encryption is a next-generation version of email encryption. It is clientless and extremely easy to set up and customize in any environment. Using SPX encryption, email messages and any attachments sent to the Device are converted to a PDF document, which is then encrypted with a password.

    Please refer: https://community.sophos.com/kb/en-US/123114

    Thanks

  • Hello, I was just checking if you ever got this working?  I've been trying it out tonight and have it mostly working. (Sorta).  I can get it to encrypt if i set the SMTP Policy to "Accept and choose a SPX Template".  (Next to the domains) Unfortunately that encrypts the message every time no matter what.  

    What I'm trying to achieve is setting a Connector in O365 that points to XG and only have it scan outbound email for Encryption.  I think I have that part working as email is only going through the XG and I can see it in the logs.  However, Encryption is just not working the way I think it should.  I tried creating a Data Control list with things like SSN, Address, Telephone number just to check it/test it.  When I choose "Data Protection" in my SMTP policy, it never triggers any of those, the email never gets encrypted.  

    I also read that I could inject "X-Sophos-SPX-Encrypt" into the header to force encryption, but that doesn't appear to be working either. 

    I should also note I'm trying this in MTA mode.

    Only thing I haven't tried is the actual Outlook Add/In.  I'll try that later to make sure its working, I just really want it to be triggered from the Data Control List.

    Thanks

  • Has anyone gotten this configuration to work? I was told that this is a support configuration. 

  • Tried, not working....

    Waiting XG firewall (rules) support based on domain name (like *.microsoft.com) instead of ip addresses

    I was told 2 that this is a supported feature (with O365)

     

  • It will work, I eventually got it going. Not sure if support can help you out, though.

     

    Are you planning to just use DLP and encryption leaving the company?

     

    J