Technical Tip: FortiMail IMAP Authentication to allow users to login to personal quarantine with an IMAP Profile
Description
This article describes how to use an IMAP profile to authenticate users and allow users to login to a personal quarantine.
Scope
FortiMail.
Solution
Navigate to Profile -> Authentication -> IMAP -> New. Configure the values as shown in the screenshot below.

Navigate to Policy -> Recipient Policy -> Inbound -> Edit the matching policy -> Authentication and Access -> Authentication Type 'IMAP' -> Authentication Profile, then attach the profile created in the previous step.

Confirm that the IMAP service is enabled on the server used in the authentication profile by navigating to System -> Mail Settings -> IMAP Server -> Enable. Enter the port numbers for IMAP and IMAPS.

Confirm that Webmail Access is enabled on the gateway by navigating to Profile -> Resource, then edit the resource profile used in the matching recipient policy and enable Webmail access.

Results:
Navigate to the FortiMail gateway IP/FQDN in the this format https://x.x.x.x/user/
Enter the username used on the backend server in the 'user@domain.com' format and enter the password.

The user quarantine is now accessible.

In the FortiMail Gateway, the login activity can be verified by navigating to Monitor -> Log -> Mail Event -> Sub Type 'Web Mail'.

Note: In this scenario, the FortiMail server was used as an IMAP Server. Any other server that supports IMAP can be used.
