Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Andy3
New Contributor II

Fortimail personal quarantine

 

Hello,

Fortimail in gateway mode(DMZ)
I want to create Fortimail personal quarantine for all users in a domain.
Do I need to connect Fortimail to AD LDAP and than configure personal quarantine?
I have 1000 domain(exchange) users.
Any advice how to do create personal quarantine
Thank you

1 Solution
AEK

You don't need to configure LDAP on FML to setup personal quarantine on FortiMail.

In your filtering profile(s) just set the action of a failed check (or default action) to PersonalQuarantine and then your FortiMail will send automatically any quarantined mail to the recipient's personal quarantine folder on the FortiMail.

You can then, as admin, either release it manually, or setup FortiMail to send to each recipient a notification mail and allow him (or not) to release the quarantined mail by himself.

 

As per my experience in general cases you don't need to connect your FortiMail to LDAP, except in few special cases for some special needs.

AEK

View solution in original post

AEK
7 REPLIES 7
Anthony_E
Community Manager
Community Manager

Hello Andy,

 

Thank you for using the Community Forum.

I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.

 

Regards,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hello Andy,

 

I have foud this documentation:

 

https://docs.fortinet.com/document/fortimail/7.2.0/administration-guide/907026/managing-the-quaranti....

 

Could you please indicate me if it helped?

 

Regards,

Anthony-Fortinet Community Team.
Markus_M
Staff
Staff

Adding to Anthony, the user DB where your users are, will be important. If your users are all on LDAP, then create an LDAP lookup. The FML should be able to do the LDAP user lookup such that you can log in with an LDAP user. The user's quarantine mailboxes should then be automatically created, so they can work with them.

 

Alternatively, you can configure to have every user simply have an email sent once there is a quarantined message or as summary every day per schedule.

A user can click on icons in that email to release an email if needed. Example mail attached as screenshot.

 

Best regards,

 

Markus

Andy3
New Contributor II

 

Thank you very much.This is really very useful information.

If I understood correctly I need to connect  Fortimail to LDAP and automatically users can log in to Fortimail and have personal quarantine?

 

And what about this second option that every user have an email sent once a day summary for quarantine messages.Is this option posible without LDAP connection?How to configure this option.

Thank you once again

 

 

AEK
SuperUser
SuperUser

Hello

No need to connect with LDAP for that.

Any mailbox (even not existing) that receives a mail that is quarantined by FML will a personal quarantine set created for it.

AEK
AEK
Andy3
New Contributor II

I'm not sure I know what you mean.Is there any additional information.
Thank you in advanced

AEK

You don't need to configure LDAP on FML to setup personal quarantine on FortiMail.

In your filtering profile(s) just set the action of a failed check (or default action) to PersonalQuarantine and then your FortiMail will send automatically any quarantined mail to the recipient's personal quarantine folder on the FortiMail.

You can then, as admin, either release it manually, or setup FortiMail to send to each recipient a notification mail and allow him (or not) to release the quarantined mail by himself.

 

As per my experience in general cases you don't need to connect your FortiMail to LDAP, except in few special cases for some special needs.

AEK
AEK
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors