Description | This article describes about VRFY command in FortiMail. |
Scope | FortiMail server mode. |
Solution |
An SMTP command called VRFY is used to confirm whether an email address is present on a mail server. It enables a client to verify the validity of an email address without sending an actual email. VRFY is helpful for validation, but if not used properly, it can potentially be a security issue.
Some users need to disable the VRFY command in the mail server to protect from SMTP user enumeration. In FortiMail server mode, there is no VRFY command.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.