Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 460
 
5-45
Cisco IronPort AsyncOS 7.6 for Email Configuration Guide
OL-25136-01
Chapter 5      Configuring the Gateway to Receive Email
Figure 5-29
Sender Group: SUSPECTLIST
Step 4
Click Edit Settings The Edit Settings dialog is displayed:
Figure 5-30
Sender Group: SUSPECTLIST: Edit Settings
Step 5
Select the THROTTLED policy from the list.
Step 6
Check the “Connecting host reverse DNS lookup (PTR) does not match the forward DNS lookup (A)” 
checkbox under Connecting Host DNS Verification.
Step 7
Submit and commit your changes.
Now, senders for which reverse DNS lookups fail will match the SUSPECTLIST sender group and will 
receive the default action from the THROTTLED mail flow policy.
Note
You can also configure host DNS verification via the CLI. See 
 for more information.
Implementing Sender Verification
First, create a new mail flow policy (for this example, it is named THROTTLEMORE) and configure it 
with more stringent throttling settings.
Step 1
On the Mail Flow Policies page, click Add Policy
Step 2
Enter a name for the mail flow policy, and select Accept as the Connection Behavior.
Step 3
Configure the policy to throttle mail.
Step 4
Submit and commit your changes.
Next, create a new sender group (for this example, it is named UNVERIFIED) and configure it to use 
the THROTTLEMORE policy:
Step 1
On the HAT Overview page, click Add Sender Group