Hi, I'm having a problem with Fortimail as a VM on the gateway website. Unfortunately, I can't communicate with the SMTP.ore server.
I've taken the following steps:
FML public address
Exposed public IP ports to FML -> 475, 587
Entered server communication via SMTPs in FML
Added an A record in the hosting
Added an MX record indicating this server as a higher priority
Is an SPF record really necessary?
Has anyone had similar problems? Is there a solution?
The hosting is blocking port 25
Hello
Could you provide a diagram (simple, hand drawing ) describing your topology please?
It's necessary to understand exactly the problem to be solved.
Let me explain:
- SPF record is required for big email players (gmail, 365 etc) nowadays in order to accept emails sent from your domain
- MX record is mandatory to define where to send email to your domain
- "Hosting provider blocking port 25" is related generally with SMTP traffic internally generated
We understand that your FML is in gateway mode protecting email to/from your hosting infrastructure; if not, please explain a bit more
regards
regards
/ Abel
Created on ‎10-26-2025 08:26 AM Edited on ‎10-26-2025 08:27 AM
Forti in gateway mode
port 465 , 587
vm Fortimail -> external hosting
DMZ for example LAN: 10.10.10.5 -> virtual IP: 5.5.5.5
Policy:
wan
to vlan1500
source all
dest fortimail
I read that I need to use spf record right now, this is problably my solution ? I will try
hosting ins't be 365 or gmail.
| User | Count |
|---|---|
| 2691 | |
| 1412 | |
| 810 | |
| 711 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.