Cisco Cisco Email Security Appliance C650 Guía Del Usuario
Chapter 5 Configuring the Gateway to Receive Email
5-166
Cisco IronPort AsyncOS 7.1 for Email Configuration Guide
OL-22158-02
The sender verification exception table is defined in the GUI via the Mail Policies
> Exception Table page (or the CLI, via the
> Exception Table page (or the CLI, via the
exceptionconfig
command) and then
is enabled on a per-policy basis via the GUI (see
) or the CLI (see
the Cisco IronPort AsyncOS CLI Reference Guide.
Entries in the sender verification exception table have the following syntax:
Figure 5-27
Exception Table Listing
more information about modifying the exception table.
Implementing Sender Verification — Example Settings
This section provides an example of a typical conservative implementation of host
and envelope sender verification.
and envelope sender verification.
For this example, when implementing host sender verification, mail from
connecting hosts for which reverse DNS lookup does not match is throttled via the
existing SUSPECTLIST sender group and THROTTLED mail flow policy.
connecting hosts for which reverse DNS lookup does not match is throttled via the
existing SUSPECTLIST sender group and THROTTLED mail flow policy.
A new sender group (UNVERIFIED) and a new mail flow policy
(THROTTLEMORE) are created. Mail from connecting hosts which are not
verified will be throttled (using the UNVERIFIED sender group and the more
aggressive THROTTLEMORE mail flow policy) prior to the SMTP conversation.
(THROTTLEMORE) are created. Mail from connecting hosts which are not
verified will be throttled (using the UNVERIFIED sender group and the more
aggressive THROTTLEMORE mail flow policy) prior to the SMTP conversation.
Envelope sender verification is enabled for the ACCEPTED mail flow policy.