Symantec 10490452 Administration Guide - Page 99

Adding senders to Blocked Senders Lists, Automatic expansion of subdomains

Page 99 highlights

Configuring email filtering 99 Managing Email Firewall policies ■ IP-based: specify IP connections Symantec Mail Security for SMTP checks the IP address of the mail server initiating the connection to verify if it is on your Allowed Senders Lists or Blocked Senders Lists. Wildcards are not supported. Although you can use network masks to indicate a range of addresses, you cannot use subnet masks that define non-contiguous sets of IP addresses (e.g. 69.84.35.0/ 255.0.255.0). Supported notations are: ■ Single host: 128.113.213.4 ■ IP address with subnet mask: 128.113.1.0/255.255.255.0 ■ Classless Inter-Domain Routing (CIDR) IP address: 192.30.250.00/18 ■ Third party services: supply the lookup domain of a third party sender service Symantec Mail Security for SMTP can check messages sources against third party DNS-based lists to which you subscribe, for example, list.example.org. Automatic expansion of subdomains When evaluating domain name matches, Symantec Mail Security for SMTP automatically expands the specified domain to include subdomains. For example, Symantec Mail Security for SMTP expands example.com to include biz.example.com and, more generally, *@*.example.com, to ensure that any possible subdomains are allowed or blocked as appropriate. Logical connections and internal mail servers: non-gateway deployments When deployed at the gateway, Symantec Mail Security for SMTP can reliably obtain the physical or peer IP connection for an incoming message and compare it to connections specified in the Allowed Senders Lists and Blocked Senders Lists. If deployed elsewhere in your network, for example, downstream from the gateway MTA, Symantec Mail Security for SMTP works with the logical IP connection. Symantec Mail Security for SMTP determines the logical connection by obtaining the address that was provided as an IP connection address when the message entered your network. Your network is based on the internal address ranges that you supply to Symantec Mail Security for SMTP when setting up your Scanners. This is why it is important that you accurately identify all the internal mail hosts in your network. For more information, see "Advanced SMTP settings" on page 25. Adding senders to Blocked Senders Lists To prevent undesired messages from being delivered to inboxes, you can add specific email addresses, domains, and connections to your Blocked Senders Lists.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258

99
Configuring email filtering
Managing Email Firewall policies
IP-based: specify IP connections
Symantec Mail Security for SMTP checks the IP address of the mail server
initiating the connection to verify if it is on your Allowed Senders Lists or
Blocked Senders Lists. Wildcards are not supported. Although you can use
network masks to indicate a range of addresses, you cannot use subnet
masks that define non-contiguous sets of IP addresses (e.g. 69.84.35.0/
255.0.255.0). Supported notations are:
Single host: 128.113.213.4
IP address with subnet mask: 128.113.1.0/255.255.255.0
Classless Inter-Domain Routing (CIDR) IP address: 192.30.250.00/18
Third party services: supply the lookup domain of a third party sender
service
Symantec Mail Security for SMTP can check messages sources against third
party DNS-based lists to which you subscribe, for example, list.example.org.
Automatic expansion of subdomains
When evaluating domain name matches, Symantec Mail Security for SMTP
automatically expands the specified domain to include subdomains. For
example, Symantec Mail Security for SMTP expands example.com to include
biz.example.com and, more generally, *@*.example.com, to ensure that any
possible subdomains are allowed or blocked as appropriate.
Logical connections and internal mail servers: non-gateway deployments
When deployed at the gateway, Symantec Mail Security for SMTP can reliably
obtain the physical or peer IP connection for an incoming message and compare
it to connections specified in the Allowed Senders Lists and Blocked Senders
Lists. If deployed elsewhere in your network, for example, downstream from the
gateway MTA, Symantec Mail Security for SMTP works with the logical IP
connection. Symantec Mail Security for SMTP determines the logical connection
by obtaining the address that was provided as an IP connection address when
the message entered your network. Your network is based on the internal
address ranges that you supply to Symantec Mail Security for SMTP when
setting up your Scanners. This is why it is important that you accurately identify
all the internal mail hosts in your network. For more information, see
“Advanced SMTP settings”
on page 25.
Adding senders to Blocked Senders Lists
To prevent undesired messages from being delivered to inboxes, you can add
specific email addresses, domains, and connections to your Blocked Senders
Lists.