McAfee MAP-3300-SWG Product Guide - Page 91

Anti-relay options, Table 69, Option definitions

Page 91 highlights

Overview of Email features Email Configuration Table 69 Option definitions (continued) Option Type Definition • Domain name - for example, example.dom. The appliance uses this to compare the recipient's email address and compare the connection against an A record lookup. • Network Address - for example, 192.168.0.2/32 or 192.168.0.0/24. The appliance uses this to compare the recipient's IP literal email address such as user@[192.168.0.2], or the connection. • MX Record Lookup - for example, example.dom. The appliance uses this to compare the connection against an MX record lookup. • Wildcard domain name - for example, *.example.dom. The appliance only uses this information to compare the recipients email address. Category • Local domain • Permitted domain • Denied domain Resolve the above domain names to IP addresses If a sender or recipient is rejected If selected, allows the appliance to use DNS to resolve the IP addresses of the domains. These lookups take place only when the SMTP proxy is initialized. • Reject - sends an SMTP 550 (permanent failure) response and closes the connection. • Reject the email and close the connection - sends a rejection code, SMTP 550 (permanent failure) response code or a SMTP 421 (Temporarily unavailable service due to potential threat message), then closes the connection. • Accept and ignore the recipient - sends an acceptance code, SMTP 250 (OK). McAfee does not recommend this option because it suggests to the sender that the message was received as intended. Import Lists/ Export Lists On an appliance from which you want to save a list of domains for anti-relay specification, click Export Lists to create a comma-separated CSV file that contains details of all the domains that you specified on this page, whether they are local, permitted or denied. On an appliance onto which you wish to put the list of domains, click Import Lists. To create your own list, see Formats for export lists later on this page. Anti-relay options Using routing characters (such as %, !, and |) is a method of passing messages between computers. With these characters, unauthorized users can relay email messages (often spam) by using computers inside your network. To permit or block this form of relaying, you specify the routing characters, which are in the part of an email address before the final @. By default, the appliance does not support routing characters in email addresses. Table 70 Option definitions Option Permitted routing characters Use the default (Permitted routing characters) Definition Specifies permitted routing characters. Normally you do not need to type any characters here. When selected, prevents the use of the following routing characters McAfee Email and Web Security Appliances 5.6.0 Product Guide 91

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336

Table 69
Option definitions
(continued)
Option
Definition
Type
Domain name
— for example,
example.dom
. The appliance uses this to compare the
recipient's email address and compare the connection against an A record lookup.
Network Address
— for example,
192.168.0.2/32
or
192.168.0.0/24
. The appliance
uses this to compare the recipient's IP literal email address such as
user@[192.168.0.2]
, or the connection.
MX Record Lookup
— for example,
example.dom
. The appliance uses this to compare
the connection against an MX record lookup.
Wildcard domain name
— for example,
*.example.dom
. The appliance only uses this
information to compare the recipients email address.
Category
Local domain
Permitted domain
Denied domain
Resolve the
above domain
names to IP
addresses
If selected, allows the appliance to use DNS to resolve the IP addresses of the
domains. These lookups take place only when the SMTP proxy is initialized.
If a sender or
recipient is
rejected
Reject
— sends an SMTP 550 (permanent failure) response and closes the connection.
Reject the email and close the connection
— sends a rejection code, SMTP 550 (permanent
failure) response code or a SMTP 421 (Temporarily unavailable service due to
potential threat message), then closes the connection.
Accept and ignore the recipient
— sends an acceptance code, SMTP 250 (OK). McAfee does
not recommend this option because it suggests to the sender that the message was
received as intended.
Import Lists/
Export Lists
On an appliance from which you want to save a list of domains for anti-relay
specification, click
Export Lists
to create a comma-separated CSV file that contains
details of all the domains that you specified on this page, whether they are local,
permitted or denied. On an appliance onto which you wish to put the list of domains,
click
Import Lists
.
To create your own list, see
Formats for export lists
later on this page.
Anti-relay options
Using routing characters (such as %, !, and |) is a method of passing messages between computers.
With these characters, unauthorized users can relay email messages (often spam) by using computers
inside your network. To permit or block this form of relaying, you specify the routing characters, which
are in the part of an email address before the final @. By default, the appliance does not support
routing characters in email addresses.
Table 70
Option definitions
Option
Definition
Permitted routing
characters
Specifies permitted routing characters. Normally you do not need to type any
characters here.
Use the default
(Permitted routing
characters)
When selected, prevents the use of the following routing characters: *!* *%* *|
*
Overview of Email features
Email Configuration
McAfee Email and Web Security Appliances 5.6.0 Product Guide
91