Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 1212
 
27-25
User Guide for AsyncOS 10.0 for Cisco Email Security Appliances
 
Chapter 27      LDAP Queries
  Using Group LDAP Queries to Determine if a Recipient is a Group Member
For more information on the 
mail-from-group
 and 
rcpt-to-group
 message filter rules, see 
Step 2
Next, the Add LDAP Server Profile page is used to define an LDAP server for the appliance to bind to, 
and an initial query for a group membership is configured.
Step 3
Next, the public listener “InboundMail” is updated to use LDAP queries for group routing. The Edit 
Listener page is used to enable the LDAP query specified above. 
As a result of this query, messages accepted by the listener trigger a query to the LDAP server to 
determine group membership. The PublicLDAP2.group query was defined previously via the 
System Administration > LDAP page. 
Figure 27-6
Specifying a Group Query on a Listener
Step 4
Submit and commit your changes. 
Example: Using a Group Query to Skip Spam and Virus Checking
Because message filters occurs early in the pipeline, you can use a group query to skip virus and spam 
checking for specified groups. For example, you want your IT group to receive all messages and to skip 
spam and virus checking. In your LDAP record, you create a group entry that uses the DN as the group 
name. The group name consists of the following DN entry:
cn=IT, ou=groups, o=sample.com
You create an LDAP server profile with the following group query:
- LOGCONFIG - Configure log subscriptions used by filters.
- ROLLOVERNOW - Roll over a filter log file.
[]>