We have users with extra email aliases attached to their Microsoft Exchange accounts. I had LDAP authentication profile selected with Recipient Verification enabled and discovered due to a user complaint that all of the emails destined to one of these attached aliases were automatically rejected. I changed the authentication method to SMTP and now it seems that any email to our @domain.com is accepted and everything else is rejected. I am pretty sure that this is not the work of the recipient verification feature but actually the recipient policy I have in place.
Will recipient verification work correctly with attached aliases? How do I get recipient verification working via SMTP/ESMTP?
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hmm
You have the fortimail as a server or gateway?
suggestion
Could you place a recipient rule with the alias b4 the LDAP profile rule ( not ideal ) for temp and review the following;
http://alstechcorner.blogspot.com/2014/06/how-to-configure-user-alias-options-on.html
Set the above query , and when you conduct the recipient lookup does it fail with the alias ?
PCNSE
NSE
StrongSwan
Mail Settings > Domains > Advanced Settings > LDAP user alias / address mapping profile
Hmm
You have the fortimail as a server or gateway?
suggestion
Could you place a recipient rule with the alias b4 the LDAP profile rule ( not ideal ) for temp and review the following;
http://alstechcorner.blogspot.com/2014/06/how-to-configure-user-alias-options-on.html
Set the above query , and when you conduct the recipient lookup does it fail with the alias ?
PCNSE
NSE
StrongSwan
Thanks for your reply. Yes my fortimail is setup in gateway mode in a DMZ. I setup another LDAP profile using the suggested instructions. The LDAP lookup passed using the alias but the recipient verification fails and an NDR is sent.
After trying several query filters I still get the same 550 error when sending an email to an alias.
I have tried:
proxyAddresses=smtp:$m
member
(&(objectClass=Group)(proxyAddresses=smtp:$m))
subtree
never
Did you try to open a case with FTNT ?
Ken
PCNSE
NSE
StrongSwan
Mail Settings > Domains > Advanced Settings > LDAP user alias / address mapping profile
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1665 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.