Skip to main content
ultimo
New Member
February 27, 2016
Question

How to configure EMAIL filter with external Exchange server

  • February 27, 2016
  • 2 replies
  • 11793 views

Greetings,

 

I have a Fortigate 70D behind a firewall in transparent mode. URL filtering is working ok and blocking bad sites.

I have configured the mail filter as in sshot. I have an external Exchange server that is connecting over.

 

But the emails with SPAM are still getting trough. I have addedd the filter to both policy traffics 

internal-wan1

wan1-internal

 

Has anyone some idea and similar setup?

 

Thanks in advance.

2 replies

m_raza
New Member
May 26, 2016

Proxy base inspection mode is much better & efficient than flow base.

Baptiste
New Member
May 26, 2016

If you have an external Exchange server, e-mails are not going thru your FW, they are directly send/receive from it.

Your FW will only see client/server traffic (Outlook/OWA)

rh1
New Member
July 6, 2016

Hi,

i'm not so familiar with spam filtering but i've setup the similar environment once before, and it worked.

my policy was something like the below.

 

/*-----

set schedule "always" set service "POP3" "IMAP" set av-profile "spam-av" set spamfilter-profile "spam" set nat enable

-----*/

 

basically, what i did was create a new policy that allows POP and IMAP, and apply the filters(filters was set in proxy mode).

 

you might want to check if your clients use POP3 or IMAP(non ssl/tls version).

 

hope this would help

Carl_Wallmark
New Member
July 6, 2016

Enable external RBL servers to your profile for higher catch rate:

 

http://kb.fortinet.com/kb...ateId=0%200%2086179855