I have an ASG425 sitting in front of our mail server which hosts several domains. The ASG is running in Transparent Mode with the SMTP proxy enabled for spam/virus scanning. It does a great job with low false positives on all mail that is inbound from the world to our hosted domains.
However, of late there seems to be a real probelm with the ASGs ability to handle SPAM/content scanning on messages that originate from our mail server and are heading out to the world. Specifically, when a webmail account is compromised and a spammer generates traffic from our mail server it is not being caught by the SMTP Proxy before hitting the world.
When we installed the unit a couple of years ago, it scanned all port 25 traffic from the mail server and would quarantine about half of it which helped us maintain a good reputation and allowed us time to shut down compromised webmail accounts before blacklisting occured. Now it doesn't catch a single message, rather I find the problem after half of the messages have gone to the world, the other half are sitting in the spool in a deferred state and we have customers calling in wondering why their email is bouncing.
Is anyone else having this same issue? If the outbound cannot be better filtered it defeats the whole purpose for installing this unit.
Thanks,
This thread was automatically locked due to age.