This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG115w outbound email scanning configuration question

Hey Guys

I am managing a Sophos XG115w Firewall. Firmware version: SFOS 16.05.8 MR-8 (haven't upgraded to 17 yet, have heard it's still a bit buggy).

Behind the firewall I have an Exchange 2010 server (fully patched), with a self signed cert (it's old, we'll migrate to O365 at some point).

Our public IP randomly get's listed on Spamhaus CSS (every month or so). I've scanned the network for the usual stuff (infections etc) and it's coming up clean. I've also checked the Exchange outgoing smtp logs and don't see anything strange there either. Incoming spam filtering is enabled on the XG115w (I've also added their domain name to the spam filtering list to get rid of NDR's for spoofed emails as I read an article about that on the community, hopefully that's not contributing to the Spamhaus listing).

I figured I would configure outbound spam filtering on the XG115w to see what it picks up, in-case it can help track down what might be happening and if there is actually spam coming from the network.


However, I've not configured outbound spam filtering on this device before or sure if it's a good idea with an older Exchange server with a self signed cert. If it's ok to setup outbound spam filtering, how would I go about doing it? Should I also set it up for smtp, pop, imap too, if so how?

 

Kind regards

Aaron



This thread was automatically locked due to age.
Parents Reply
  • Hi Sachin

     

    Many thanks for your reply.

     

    I checked the XG115w and it's currently set to transparent mode. If I follow your link and enable MTA mode, is there anything else I need to disable or cleanup before MTA will work?

    Also, what's the difference between transparent mode and MTA mode? Is there any advantage of one over the other?

    Is there any scenario when you would choose transparent mode over MTA mode?

    Do you get any functionality loss with MTA vs transparent mode? (E.g. email send/receive size restrictions, Exchange compatibility, performance issues etc)

     

    Kind Regards

    Aaron

Children
No Data