McAfee MAP-3300-SWG Product Guide - Page 90

The order in which anti-relay checks take place, Relaying email, Table 69, Option definitions

Page 90 highlights

Overview of Email features Email Configuration The order in which anti-relay checks take place The appliance makes anti-relay checks at the RCPT TO phase of the SMTP conversation. It is important to understand the order in which the anti-relay checks take place: • Is the local domain list empty? • Yes. The appliance operates as an open relay and allows the recipient to receive the message. • No. The appliance performs the next check. • Is the recipient or connection in the permitted domains list? • Yes. The appliance allows the recipient to receive the message. • No. The appliance performs the next check. • Is the recipient or connection in the denied domains list? • Yes. The appliance rejects the recipient. • No. The appliance performs the next check. • Is the recipient or connection in the local domain list? • Yes. The appliance checks whether the recipient matches on a permitted routing character. • Yes. The appliance accepts the recipient. • No. the appliance checks whether the recipient matches on a denied routing character. • Yes. The appliance rejects the recipient. • No. The appliance accepts the recipient. • No. The appliance rejects the recipient. Relaying email Use this section to specify domains and networks that can use the appliance for handling their email. Table 69 Option definitions Option Add Domain Definition Click to specify the domains that can relay messages through the appliance to the recipient. Choose from: • Local domain - These are the domains or networks for which email is accepted for delivery. For convenience, you can import a list of your local domain names using the Import Lists and Export Lists options. McAfee recommends that you add all domains or networks that are allowed to relay messages as local domains. • Permitted domain - Email is accepted. Use permitted domains to manage exceptions. • Denied domain - Email is refused. Use denied domains to manage exceptions. Hold your mouse cursor over the field to see the recommended format. You must set up at least one local domain. Add MX Lookup Delete Selected Items Domain Name/ Network Address/MX Record Click to specify a domain that the appliance will use to identify all mail server IP addresses from which it will deliver messages. Removes the selected item from the table. You must apply the changes before the item is completely removed from the appliance configuration. Displays the domain names, wildcard domain names, network addresses, and MX lookups from which the appliance will accept or refuse email. 90 McAfee Email and Web Security Appliances 5.6.0 Product Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336

The order in which anti-relay checks take place
The appliance makes anti-relay checks at the RCPT TO phase of the SMTP conversation. It is important
to understand the order in which the anti-relay checks take place:
Is the local domain list empty?
Yes. The appliance operates as an open relay and allows the recipient to receive the message.
No. The appliance performs the next check.
Is the recipient or connection in the permitted domains list?
Yes. The appliance allows the recipient to receive the message.
No. The appliance performs the next check.
Is the recipient or connection in the denied domains list?
Yes. The appliance rejects the recipient.
No. The appliance performs the next check.
Is the recipient or connection in the local domain list?
Yes. The appliance checks whether the recipient matches on a permitted routing character.
Yes. The appliance accepts the recipient.
No. the appliance checks whether the recipient matches on a denied routing character.
Yes. The appliance rejects the recipient.
No. The appliance accepts the recipient.
No. The appliance rejects the recipient.
Relaying email
Use this section to specify domains and networks that can use the appliance for handling their email.
Table 69
Option definitions
Option
Definition
Add Domain
Click to specify the domains that can relay messages through the appliance to the
recipient. Choose from:
Local domain
— These are the domains or networks for which email is accepted for
delivery. For convenience, you can import a list of your local domain names using
the
Import Lists
and
Export Lists
options. McAfee recommends that you add all domains
or networks that are allowed to relay messages as local domains.
Permitted domain
— Email is accepted. Use permitted domains to manage exceptions.
Denied domain
— Email is refused. Use denied domains to manage exceptions.
Hold your mouse cursor over the field to see the recommended format.
You must set up at least one local domain.
Add MX Lookup
Click to specify a domain that the appliance will use to identify all mail server IP
addresses from which it will deliver messages.
Delete Selected
Items
Removes the selected item from the table. You must apply the changes before the
item is completely removed from the appliance configuration.
Domain Name/
Network
Address/MX
Record
Displays the domain names, wildcard domain names, network addresses, and MX
lookups from which the appliance will accept or refuse email.
Overview of Email features
Email Configuration
90
McAfee Email and Web Security Appliances 5.6.0 Product Guide