Skip to main content
Contributor III
February 12, 2009

Technical Tip: Spam detection rate is low

  • February 12, 2009
  • 0 replies
  • 1547 views

Description

 

This article describes the case when the spam detection rate is low.

 

Scope

 

FortiMail.

 

Solution

 

To solve this problem:

  • Confirm that no SMTP traffic is bypassing the FortiMail unit due to an incorrect routing policy. Configure routers and firewalls to direct all SMTP traffic to or through the FortiMail unit to be scanned. If the FortiMail unit is operating in gateway mode, for each protected domain, modify public DNS records to keep only a single MX record entry that points to the FortiMail unit.
  • Use Safelists with caution. For example, a safelist entry *.edu would allow all email from all domains in the .edu top-level domain to bypass antispam scans.
  • Do not safelist protected domains. Because safe lists bypass antispam scans, emails with spoofed sender addresses in the protected domains could bypass antispam features.
  • Verify that all protected domains have matching policies and proper protection profiles.
  • Consider enabling adaptive antispam features such as greylisting and sender reputation.
  • Consider enabling spam outbreak protection.
  • Consider enabling SPF, DKIM, and DMARC checks.
  • Consider enabling Sandboxing.

Note:

Enable additional antispam features gradually, and do not enable additional antispam features after having achieved a satisfactory spam detection rate. Excessive antispam scans can unnecessarily decrease the performance of the FortiMail.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!