Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 548
3-185
Cisco IronPort AsyncOS 7.1 for Email Advanced Configuration Guide
OL-22164-02
Chapter 3      LDAP Queries
  •
Generally, the value of the 
mail
 attribute entry in many Active Directory 
implementations has a matching value “ProxyAddresses” attribute entry.
  •
Microsoft Exchange environments that are aware of each other within the 
infrastructure can usually route mail between each other without involving a 
route back to the originating MTA.
Testing LDAP Queries
Use the Test Query button on the Add/Edit LDAP Server Profile page (or the 
test
 
subcommand in the CLI) of each query type to test the query to the LDAP server 
you configured. In addition to displaying the result, AsyncOS also displays the 
details on each stage of the query connection test. You can test each of the query 
types.
The 
ldaptest
 command is available as a batch command, for example: 
ldaptest LDAP.ldapaccept foo@ironport.com
If you entered multiple hosts in the Host Name field of the LDAP server attributes, 
the IronPort appliance tests the query on each LDAP server.
 summarizes the testing results. (You can also use the 
ldaptest
 
command.) 
Table 3-1
Testing LDAP Queries  
Query type
If a recipient matches 
(PASS)...
If a recipient does not match 
(FAIL)... 
Recipient Acceptance 
(Accept, 
ldapaccept
)
Accept the message. 
Invalid Recipient: 
Conversation or delayed 
bounce or drop the message 
per listener settings. 
 
DHAP: Drop.
Routing
(Routing, 
ldaprouting
)
Route based on the query 
settings. 
Continue processing the 
message. 
Masquerade 
(Masquerade, 
masquerade
)
Alter the headers with the 
variable mappings 
defined by the query. 
Continue processing the 
message.