FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
nevan
Staff
Staff
Article Id 379053
Description This article describes the information for which type of the 'Anti-Spam Block/Allow List Entry' will not allow to use the 'Mark as Reject' feature for Email Filter profile.
Scope FortiGate.
Solution

The 'Local Spam Filtering' can be set inside the email filter profile in both CLI and GUI.

 

Here is a sample of the local spam filter below having two different filter types which are 'ipX-subnet' and 'email-from' which is the Sender Address in GUI.

CLI:
 

config emailfilter block-allow-list
    edit 1
      set name "email_filter"
      config entries
        edit 1
            set action reject
            set ip4-subnet 1.2.2.2 255.255.255.255
          next
        edit 2
            set type email-from
            set pattern ".*@gmail\\.com$"
          next
        end
    next
end

 

 

Note:

After the CLI configuration, the pattern will be seen differently showed below. After the domain name, there will be an extra '\\' sign and it is suggested not to use the quotation mark while configuring the regex.

 

email23.png

 

But the 'Mark as Reject' action should not be available for the type 'email-from' or 'Sender Address', 'email-to' or 'Recipient Address' and 'Subject' type of list. 

 

email22.jpg

 

email24.png

 

This feature action should only be available for the IP/Netmask or IPv6/Netmask type of block/allow list and for other types will be grayed out which is expected.

Related article:
Technical Tip: How to configure and troubleshoot an email filter profile to detect and manage spam o...

Contributors