SolarWinds Mail Assure User Guide
Below you will find brief information for Mail Assure. This user guide will provide details on Mail Assure's various features, including email filtering, spam quarantining, and domain management. You may also find instructions for managing users, configuring settings and troubleshooting common issues.
Advertisement
Advertisement
Mail Assure
Admin, Domain and Email Level Guide
Last Updated:
Tuesday, February 6, 2018
--------------------------- ©2017
CONTENTS
Reset to Default Dashboard Setting
Incoming Filtering - Admin Level
View Incoming Bandwidth Overview
ii
Mail Assure
Reply to Email in the Delivery Queue
Incoming Whitelist Filtering Rules
View Incoming Whitelist Filtering Rules
Add an Incoming Whitelist Filtering Rule
Incoming Blacklist Filtering Rules
View Incoming Blacklist Filtering Rules
Add an Incoming Blacklist Filtering Rule
Outgoing Filtering - Admin Level
View Outgoing Bandwidth Overview
Manage Identities - Admin Level
Manage Outgoing Users - Admin Level
Generate Outgoing Report - Admin Level
Outgoing Blacklist Filtering Rules
View Outgoing Blacklist Filtering Rules
Add Outgoing Blacklist Filtering Rule
Manage Protection Report Templates
iii
Manage Email Notifications Templates
Edit an Email Notification Template
View API Calls History - Admin Level
Add Recipient to the Blacklist
Manage Outgoing Sender Blacklist
iv
Mail Assure
Manage Your Admin User Profile
Configure Inbound Filtering for Microsoft Office 365
Step 1 - Add Your Domain to Mail Assure
Step 2 - Configure a Rule in Office 365 to Allow Mail to be Delivered from Mail Assure into
Step 3 - Update your MX records to point to Mail Assure
Configure Outbound Filtering for Microsoft Office 365
Configure Exchange Online/Office 365 for Mail Assure SMTP Journaling
Step 2 - Configure the domain with the journaling address
Step 3 - Set up a new Connector in Office 365
Step 4 - Configure the SMTP journaling address as a 'Mail Contact' address
Step 5 - In Mail Assure Create the Outbound User for the Domain
Step 6 - Create an Exchange rule in the Exchange Admin Centre to BCC all Mail to be
Archived to the Journaling Address.
Accessing the Domain Level Control Panel
Incoming Filtering - Domain Level
Create and Email Log Search Report
v
View Spam Quarantine - Domain Level
View Quarantined Message Content
Release and Train Quarantined Messages
Release and Whitelist Quarantined Messages
Remove Messages from Quarantine
Remove and Blacklist Quarantined Messages
Manage Quarantine Filter Settings
To access the Local Recipients page:
Rejected Local Part Characters
View Domain Statistics (Incoming)
vi
Mail Assure
Clear Callout Cache - Incoming
Incoming Whitelist Filtering Rules - Domain Level
Incoming Blacklist Filtering Rules - Domain Level
Incoming Rejection Classifications
Outgoing Filtering - Domain Level
Manage Identities - Domain Level
Manage Outgoing Users - Domain Level
Configure the Abuse Report Address
Clear Callout Cache - Outgoing
Generate Outgoing Report - Domain Level
View Domain Statistics (Outgoing)
Outgoing Blacklist Filtering Rules
Enable Journaling for Archive Recipient
vii
View API Calls History - Domain Level
Periodic User Report - Domain Level
Add a Report Recipient Manually
Manage Attachment Restrictions
Manage Your Domain User Profile
Accessing the Email Level Control Panel
Incoming Log Search - Email Level
View Spam Quarantine - Email Level
Enable Periodic User Report - Email Level
Whitelist/Blacklist - Email Level
Manage Sender Whitelist - Email Level
Manage Sender Blacklist - Email Level
viii
Mail Assure
Manage your Email User Profile
ix
Introduction
Introduction
This guide describes how to use the Mail Assure email security system to protect your domains from spam and virus threats. It covers how to manage your domains and set up your users and also how to access your Spam Quarantine and your email if your server is down or offline.
The guide focuses on the tasks available to Admin users, Domain users and Email users and is structured to show the tasks available to each of these user types: in the Admin Level Control
Panel, Domain Level Control Panel and the Email Level Control Panel.
For more information on the different Control Panel levels available and the different user types that can access Mail Assure (and what they can access), see
Tip
- For instruction on how to quickly get started with Mail Assure, see the Mail Assure
Quick Start Guide
.
What's New
5th February 2018
New Admin tab added to Sender/Recipient Whitelist and Blacklist
. Anything applied on this tab applies to all domains underneath this Admin account. See
For full details of this week's release, see
Mail Assure - Release Info
.
29th January 2018
Reset Branding to Defaults
- A new
Reset
button allows you to reset any branding changes you have made back to the original defaults. See
.
22/01/2018
1
Introduction
Combining domain and email aliases
- It’s now possible to use both an email and a domain alias in the same address. For example, if the domain example.org is an alias for the primary domain example.com, and example.com has an email alias example_alias@ for the primary mailbox example@, then: n [email protected] is an alias for [email protected]
n n [email protected] is an alias for [email protected]
[email protected] is an alias for [email protected]
For full details of this week's release, see
Mail Assure - Release Info
.
15/01/2018
New features n n
Improved Domain Alias Page
- The Domain Aliases page now allows you to set up filters in the Query Rules panel to allow searching for aliases easier. See
.
Outgoing Sender Blacklist
- You can now manage the Sender blacklist for outgoing mail from the Admin and Domain Level Control Panels. See
Manage Outgoing Sender Blacklist .
For full details of this week's release, see
Mail Assure - Release Info
.
08/01/2018
New features: n
Automatic Creation and Management of HTTPS Certificates
- A new HTTPS SSL certificate section added to the Branding page has the new option '
Generate and manage a TLS certificate for me via Let's Encrypt
'. Choosing this option means that you will not need to go through the lengthy manual set up process which involves generating a CSR, requesting a certificate (and any intermediate certificates) from a
Certificate Authority (CA) and uploading to the system. The system will do this automatically for you including renewing certificates when they expire. See
Management - System Generation and Management of TLS Certificate
.
2
Introduction n
Temporary Log Search
- The new Temporary Log Search feature allows you to view logs for outgoing mail which has not completed processing but may already have been delivered. These files do not show up in the standard Log Search because this would slow down the search significantly. Access this from the Admin or Domain Level Control Panels from
Outgoing - Temporary log (preview)
. See
Log Search (Preview)
.
Note
- This is currently only available in Preview mode and can only be accessed by Admin users with 'Features preview' enabled in the
page.
For full details of this week's release, see
Mail Assure - Release Info
.
25/12/2107
New features:
Location and Language added as Match Types for Custom Filtering Rules
- You can now create Custom Filtering Rules based on specific languages and locations. This allows you to block / allow messages by sender location and by the language of the content. You can use these in the Simple and Advanced versions of the pages. See: n n n
Incoming Whitelist Filtering Rules
Incoming Blacklist Filtering Rules
Outgoing Blacklist Filtering Rules
For full details of this week's release, see
Mail Assure - Release Info
.
18/12/2017
Here are this week's new features: n
New Sender/Recipient Whitelist/Blacklist pages
- The new sender and recipient whitelist and blacklist pages have moved out of 'preview' this week. The new pages offer more flexibility when searching for addresses that are whitelisted or blacklisted, load faster, and are more consistent with the rest of the new pages in the control panel. See
3
Introduction n n
Customizable Dashboard
- Users at Admin and Domain level are now able to customize the links that appear in the dashboard. You can move groups of links around, add or remove links from a group (including links to external pages e.g. your knowledge base or your own support system), and add or remove groups. The customizations that you make are saved for you personally, and do not impact any other users. See
.
Improved Quarantine Link
- Users who have ‘
’ enabled have a new quarantine page (both incoming and outgoing). Rather than a completely separate system, the quarantine link takes you to a customized Log Search page, with all filters and columns selected for viewing the quarantine. Users already familiar with the Log search will find this much easier to use. The new quarantine page is also much more customizable than the old, and more compact when viewing results. All the actions available in the old quarantine pages are also available via the preview Quarantine Log
Search pages.
Click here for complete information about latest release updates and bug fixes.
04/12/2017
Here are this week's new features: n
Custom Filtering Rules out of Preview and on general release
- New custom
Whitelist/Blacklist Filtering Rules allow you to allow or block domain-specific incoming or outgoing mail. See last week's release details below for more information.
n
Unsubscribe action now available in Email Scout reports
- Report recipients can choose to unsubscribe from Email Scout Reports.
27/11/2017
Here are the new features in this latest version of Mail Assure: n
New Whitelist/Blacklist Filtering Rules for Incoming/Outgoing Mail
- Set up custom rules to allow or block domain-specific incoming or outgoing mail (this is currently in
Preview mode and can only be accessed by Admin users with 'Features preview' enabled in the
page):
4
Introduction n n
Incoming Whitelist Filtering Rules
Incoming Blacklist Filtering Rules
n
Outgoing Blacklist Filtering Rules
You can also choose to use the 'advanced' Add Rule dialog (instead of the default 'simple' dialog), by activating/inactivating the advanced dialog in the Admin or Domain User Profile pages: n n
Manage Your Admin User Profile
Manage Your Domain User Profile
Click here for complete information about latest release updates and bug fixes.
Accessing Mail Assure
Log into Mail Assure using the URL and credentials provided by your account manager.
Once you are logged in, you are presented with the application Control Panel Dashboard. There are three different Control Panels in Mail Assure and the one you see (and what it contains) depends on your user access permissions.
The following Control Panel levels are available: n n n
Admin Level Control Panel - Available to Admins and Sub-Admins. See
.
Domain Level Control Panel - Available to Domain users and also Admins and Sub-Admins with the correct permissions. See
Email Level Control Panel - Available to Email users and also Admin, Sub-Admin and
Domain users with the correct permissions. See
Note
- Some features are shared across Control Panels. For example, Outgoing
Reports are available from the Admin and Domain Level Control Panels. At the
Domain Level, the reports are specific to the logged in domain. At the Admin level, the Outgoing Reports can cover all domains - as an MSP, you can choose which domains you want to report on.
5
Introduction
Important
- If you make changes when logged in to the Admin level, this will affect all of your domains. To make domain or user-specific changes use the 'Login as' feature to limit changes to the appropriate level. For example, if you make branding changes while logged in at the Admin Level, these changes will propagate to all of your customer domains that do not have their own branding set up. For more information, see
The following user types can access Mail Assure: n
Admin Users
: n n n
Top level Admin user - There is only one top level Admin user per account. This user can set up other Admin users to manage the system. This user can access all
Control Panel levels.
Sub-Admin user - Admin user with potentially all of the privileges of the top level
Admin user. These can be created by the top level Admin user or by Sub-Admin users if they are given the permission to create Sub-Admins. This user can access all Control Panel levels.
Domain User
- The Domain user can access their own Domain Level Control Panel and can be set up by Admin users.
Note
- Currently, only one domain user can be set up per domain.
n
Email Users
- Can manage their own specific Email settings, access the Quarantine etc.
User Permissions
The following matrix highlights the different user types, which Control Panel they can access and what they can access within their Control Panel:
F
EATURE
A
DMIN
U
SER
S
UB
-A
DMIN
U
SER
D
OMAIN
U
SER
E
U
SER
Control
Panel/Dashboard
Access to Admin level Control Panel
/ Dashboard
Access to Admin level Control Panel
/ Dashboard
Access to
Domain level
Control
Panel/Dashboard
Access to
Email level
Control
Panel /
Dashboard
6
Introduction
F
EATURE
Domain
Management
Panel
Incoming
Filtering Panel
Yes
Yes
A
DMIN
U
SER
S
UB
-A
DMIN
U
SER
D
OMAIN
U
SER
E
U
SER
Yes No No
Outgoing Filtering
Panel
Yes
Archive Panel
Private Label
Panel
Server Panel
Yes
Yes
Yes
Protection Report
Panel
No
Email Restrictions
Panel
No
Yes - Can manage this if given this permission by the parent Admin
Yes
Yes - Can manage this if given this permission by the parent Admin
Yes
Yes - Can manage this if given this permission by the parent Admin
Yes
Yes - Can manage this if given this permission by the parent Admin
No
Yes - excluding access to
Certificates
No
Yes - limited to
API Calls History
Yes
No Yes
Yes
Yes
Yes
No
No
Yes -
Periodic
User Report only
No
7
Introduction
F
EATURE
Whitelist/Blacklist
Panel
No
Webinterface
Users Panel
Others Panel
A
DMIN
U
SER
Yes - Can manage
Admin, Domain and Email users and permissions
S
UB
No
-A
DMIN
U
SER
D
Yes
OMAIN
U
SER
Yes - Can manage
Admin, Domain and Email users and permissions
Yes - Can manage Email users and permissions
Yes - Manage own profile and send
Yes - Manage own profile and send
Yes - Manage own profile and send Email
E
Yes
No
U
SER
Yes -
Manage own profile and send
For information on how to manage user access to specific areas of Mail Assure, see
.
For an overview of the Mail Assure interface, see
Timeout Settings
The inactivity timeout is currently set at 3600 seconds and is the same for all users. Currently this is not configurable.
Using the 'Login as' Feature
When logged into the Admin Level Control panel as an Admin user, you can choose to log in as a
Domain user or an Email user using the
Login as
feature.
When logged into the Domain Level Control Panel as a Domain user (or as an Admin user), you can choose to log in as an Email user, using the
Login as
feature.
8
Introduction
Log in as a Domain user.
1.
In the Admin Level Control Panel, select
Webinterface users - Manage domain users
.
2.
In the dropdown alongside the domain user you want to log in as, select
Login as user
.
You are now logged into the Domain Level Control panel as the Domain user.
Any changes you now make are limited to the domain you are logged into.
9
Introduction
Log in as an Email User
1.
In the Admin Level or Domain Level Control Panel, select
Webinterface users - Manage email users
.
2.
In the dropdown alongside the Email user you want to log in as, select
Login as user
.
You are now logged into the Email Level Control Panel as the Email user.
Any changes you now make are limited to your Email user settings.
Finish Login as Session
1.
To finish a 'Login as' session, click on the
Finish login as session
icon at the top right of the page:
10
Introduction
This will take you back to your previous login session.
Application Overview
Navigating Mail Assure
To navigate Mail Assure, use the left-hand Navigation panel to move around the system. The
Dashboard contains icons linking to the same features accessible from the Navigation panel.
11
Introduction
Customize Dashboard
Using the Customize Dashboard toggle you can: n n n
Edit, move and remove any of the panel groups. See
Add panels with your own links to the Dashboard. See
Reset back to the default Dashboard setting. See
Reset to Default Dashboard Setting
12
Introduction
Edit Dashboard Panel Group
When you make any changes to the dashboard panels this only affects your Dashboard and not that of any other users.
1.
At the top right of the Dashboard, slide the
Customize dashboard
toggle to the on position.
2.
To move a panel, click and drag to the desired location.
3.
To edit a panel, click on the icon at the top right of the panel you want to change:
4.
Select
Edit group
to open the
Edit
dialog for that panel.
In this dialog you can: n
Change the Group Name of the panel n
Remove item links from the Links list n
Add new links e.g. a link to your Support page
5.
Once you have made your changes, click
Save
.
Add a Widget
You can also choose to add a new panel.
1.
At the bottom of the Dashboard, click on
Add widgets
.
The
Available widgets
panel is displayed,
2.
Click on
Links Collection
to open the
Add new link group
dialog.
13
Introduction
Any default groups are available from the dropdown.
Default
tab in the
Available presets
Note
- If there are no default groups available, this means that you already have all the default groups displayed on your Dashboard.
3.
Click on the
Custom group
tab to create your own custom panel.
4.
Enter the new
Group Name
.
5.
In the
New Link
panel you can add a link to the new group. Select whether you want the link to be Internal or External.
6.
Enter the
Link URL
and select the
Open link in new tab
option if you want the linked page to open in a new tab.
7.
Enter the
Link name
.
8.
If you want to add another link to this group, click on
Add new link to this group
at the bottom of the dialog and repeat the steps 5-7 above.
9.
Click
Save
to add your new panel to the Dashboard.
10.
Click
Save customization
at the bottom of the Dashboard to keep your changes.
Reset to Default Dashboard Setting
To reset your Dashboard back to the default settings and remove any changes you have made:
1.
At the top right of the Dashboard, slide the
Customize dashboard
toggle to the on position.
2.
At the bottom left of the page, select
Reset to default
.
3.
In the confirmation dialog, select
Reset to default
.
Features Preview
The Features Preview option gives you early access to new system features.
1.
To see all new features in Preview mode, select
Others - User's profile
.
2.
In the
User's Profile
page, set the
Features preview
option to
Active
and click
Save
.
14
Introduction
Note
- Features available in Preview mode may be subject to change as they are developed.
15
Admin Level Control Panel
Admin Level Control Panel
The Admin Level Control Panel/Dashboard can be accessed by Admin and Sub-Admin users and provides access to the following:
What do you want to do?
n n n n n n n n n n n
Domains - Add and manage all of your domains. See
Incoming - Incoming mail information including Log Search, Bandwidth Overview,
Incoming Delivery Queue, Global Statistics and Whitelist/Blacklist Filtering Rules. See
Incoming Filtering - Admin Level
.
Outgoing - View Log Search, Bandwidth Overview, Manage Users and Identities and Run
Outgoing Reports. See
Outgoing Filtering - Admin Level
.
Archive - Check archive usage for your domains. See
.
Private label - Customise your system branding requirements, set up OAuth settings and manage protection report templates. See
Server - Manage API calls, certificates, notification templates etc. See
Webinterface users - Set up and manage your admin, domain and email users. See
.
Other - Manage logged-in user profile, compose and send emails, diagnose network issues. See
.
Configure Inbound Filtering for Microsoft Office 365
Configure Outbound Filtering for Microsoft Office 365
Configure Exchange Online/Office 365 for Mail Assure SMTP Journaling
Important
- If you make changes when logged in to the Admin level, this will affect all of your domains. To make domain or user-specific changes use the 'log-in as' feature to limit changes to the appropriate level. For example, if you make branding changes while logged in at the Admin Level, these changes will propagate to all of your customer domains that do not have their own Branding set up.
16
Admin Level Control Panel
Domain Management
n n n
View Domain Overview
In the
Domains
panel, click on
Overview
.
The domain
Overview
contains a table which lists all of your domains. It displays the following columns: n n
Domain column - Displays the domain name. The green boxes represent the products that are enabled for the domain (mouseover a box to see the product it represents).
Aliases - Displays all of the aliases set up for this domain. All emails sent to any of your domain aliases are sent to the same user on your main domain. Set up your aliases from the
Incoming panel - Domain aliases
in the Domain's Control Panel. See
Click on the dropdown to the right of each domain to see the following menu:
17
Admin Level Control Panel n n n
Configure - Opens the domain's Control Panel. See
. You can also click on the domain itself to do this.
Manage products - Choose which products you want available to this domain: Incoming
Mail, Outgoing Mail and Archiving. Deselecting a product removes the panel from the
Domain Control Panel and the options relating to that product will no longer appear.
Protection status - Check the domain's protection status for the following: n n n n n n n
Destination routes
MX routes check
Check routes for open relays
Catch-all status
Valid recipient count - Displays the number of valid recipients/mailboxes in the domain for which the system processed emails in the last seven days.
Transfer to an admin - Transfer the domain to another admin user.
Telnet - Use Telnet to test the connection between the filtering server and the destination route set for this domain.
Add a Domain
1.
In the Admin Level Control Panel, click on
Domains - Add Domain
:
18
Admin Level Control Panel
2.
In the
Add domain
page, enter your domain name and click
Continue
.
3.
After verifying that the domain name you have entered is correct, in the
Destination routes
field, add the mail server address (IP or FQDN) that incoming mail is being routed through after filtering.
Tip
- Add multiple routes here for load balancing purposes or if an alternative route is needed in case of failover.
If you do not have a specific destination server route to add from the start, the Control panel will automatically fill in a suggested destination route for you, with a default destination port 25.
After setting the destination route, you need to modify your MX Records in your domain DNS
Settings, in order to point to the SolarWinds routes - see
MX Verification Tool
Use the MX Verification Tool to check that your system is using the correct MX records.
1.
In the Admin Level Control Panel, select
Domains - MX verification tool
.
2.
The default MX hostnames are listed - the system takes these from the
Server - Settings
page (see
19
Admin Level Control Panel
3.
Click on
Start verification
. The system then checks all domains' MX records and displays any whose MX records do not match. All incoming and outgoing mail from domains that do not have the matching MX records will not be filtered by Mail Assure.
You can also download a .CSV file listing all domains that were checked and of those, which are non-matching. Do this using the
Download report
button.
Incoming Filtering - Admin Level
From the Incoming section you can perform the following tasks: n n n n n
View Incoming Bandwidth Overview
- View graphical representation of bandwidth usage as a total and per domain
- View emails that are being queued when not accepted by the destination server.
View Global statistics - View incoming statistics over a specified time-frame for all the domains you manage, in graphical and tabular format. Includes General Accuracy percentage and Spam ratio of Spam emails to all filtered emails. It also shows the following Metrics: Not Spam messages; Unsure messages; Spam messages blocked;
Viruses blocked; Whitelisted and Blacklisted - and shows the Bandwidth required for each metric and the number of messages in each category.
Incoming Whitelist Filtering Rules
- View existing and create new rules to always allow specific mail at the domain level.
Incoming Blacklist Filtering Rules
- View existing and create new rules to always block specific mail at the domain level.
20
Admin Level Control Panel
View Incoming Bandwidth Overview
To view the incoming bandwidth usage per domain:
1.
In the
Incoming
panel, click on
Bandwidth overview
.
2.
Specify the Date range in the fields provided and click on
Show
.
3.
The total bandwidth usage amount for all domains is shown along with the individual usage per domain - in the form of a pie chart and a table.
Message Queueing
Generally emails are delivered directly to the destination server. However, if the delivery attempt to the destination server returns a temporary failure, all email messages sent to known, valid recipients are queued locally on the filtering servers for delivery retry.
Emails which have been permanently rejected by the destination server with a 5xx error code, will NOT be queued and are rejected by the system. If the destination mail server acts as a catch-all for the domain, no recipients will be cached and therefore email will only be queued if the valid recipients have been explicitly set as Local Recipients in
Incoming - Local recipients
(accessible from the Domain Level Control Panel). If a recipient is not cached as valid, the message will be temporarily rejected and queued with the sender instead of on the filtering server (unless
Use local recipients
is enabled in the Local Recipients page). For more information about Local Recipients, see
.
Automatic Retry Schedule
Messages queued for known valid recipients because of temporary problems with the destination route (e.g network problems) are automatically retried for delivery at the following approximate intervals: n n n
During the first 2 hours, delivery is retried at a fixed interval of 15 minutes.
During the next 14 hours, delivery is retried at a variable interval, starting at 15 minutes and multiplying by 1.5 with each attempt (e.g. after 15 minutes, then 22.5 minutes, then
34 minutes, and so on).
From 16 hours since the initial failure, until 4 days have passed, delivery is retried at a fixed interval of every 6 hours.
21
Admin Level Control Panel n
After 4 days we generate a bounce to the sender. If the bounce cannot be delivered immediately (i.e. if the 'message could not be delivered' message (Non-Delivery Report) fails to send), it will be frozen automatically. After this time, delivery of the message will have permanently failed. Optionally, via the Software API, the 4 days can be overruled to a longer (or shorter) period.
When a message is frozen (it cannot be delivered to the recipient or returned to the sender), no more automatic delivery attempts are made. An Admin user can “thaw” ( force retry) such messages when the problem has been corrected.
Mail Assure caches valid recipients up to 4 days. After this time, Mail Assure will not queue email for those recipients and instead temporarily rejects the message so it is queued on the sending server. The sending server in this case will automatically retry delivery. When using the
'Local Recipients' feature (described above), no caching is involved and Mail Assure continues to accept and queue the emails for all specified recipients.
See also: n n
Reply to Email in the Delivery Queue
View Incoming Delivery Queue
The Incoming Delivery Queue stores emails that are not being accepted by the destination server (your mail server administrator should be able to check why these emails are not being accepted).
The system attempts to re-deliver queued messages automatically for 4 days. If, after 4 days, a message still cannot be delivered to the recipient, the system will try to bounce it to the sender.
If it cannot be bounced, the message is placed in a frozen state - it cannot be delivered to the recipient or bounced back to the server.
If required, you can manually force delivery of a queued message after resolving the destination mail server issues.
To view the emails in the queue:
You can view the Incoming Delivery Queue at the Admin Level, Domain Level and Email Level.
22
Admin Level Control Panel n n n
At the Admin Level you can see the queue for all recipients for all domains (and can filter).
At the Domain Level you can see the queue for all recipients in the domain you are logged into.
At the Email Level, you can see the queue for your own mailbox.
1.
Click on
Incoming - Incoming delivery queue
(the following example shows the page that is accessed by an Email user and displays all emails queued for delivery to their own mailbox):
23
Admin Level Control Panel
2.
Choose from the following filters: n
Server - The destination server - choose all or select one from the list of those available.
n
Message ID
24
Admin Level Control Panel n
Time - Amount of time in the queue in seconds as a limit e.g. 300 or a range of seconds e.g. 1800-3600 n
Size - Size of email in bytes as a limit e.g. 300 or a within a range e.g. 500-900 n
Sender n
Recipient n
Match n
Include email type n
Return partial matches
3.
Click
Start search
to run the search.
All queued emails which match the filters are listed in the table at the bottom of the page:
The following tasks can be carried out on the listed messages:
To view the message, click on the link in the
Message ID
column.
The dropdown to the left of the email allows you to:
25
Admin Level Control Panel n n n n n n
Check retry time
Force retry
- Attempts to resend the message immediately.
Delete
Delete and notify user
Delete and report as spam
Check error details
- Shows the following information: n n n n n n n n
Local host - The filtering server that is sending the email.
Remote host - The destination mail server.
Remote IP - The IP of the destination mail server.
Permanent rejection - True/False - If this is a permanent or temporary rejection.
Additional info - The reason the email was placed in the queue - you can check what needs to be resolved on the destination server.
Telnet
View
Reply
- See
Reply to Email in the Delivery Queue
Reply to Email in the Delivery Queue
Whilst a message is queued you can reply to it directly using the "Reply" option from the message options:
1.
Go to
Incoming - Incoming delivery queue
.
2.
Enter your filters then click on
Start search
.
3.
Locate the message you want to reply to, click on the dropdown to the left of the message and select
Reply
:
26
Admin Level Control Panel
The Email reply page is displayed, allowing you to reply to the message.
Incoming Whitelist Filtering Rules
In the Whitelist Filtering Rules page you can view all whitelist filtering rules that have been set up for your domain(s) and you can also add new ones. Incoming mail that matches any of the rules will always be delivered.
The rules are based on Python's regular expression (regex) syntax. (For more information on regular expressions, see regex101.com
).
This page can be accessed from the Admin Level and the Domain Level.
27
Admin Level Control Panel n n
View Incoming Whitelist Filtering Rules
Add an Incoming Whitelist Filtering Rule
View Incoming Whitelist Filtering Rules
1.
In the Admin Level or Domain Level Control Panel, select
Incoming - Whitelist filtering rules
.
The
Incoming whitelist filtering rules
page is displayed.
There are three tabs: n
Domain Rules - Rules that apply to a specific domain. You can add new rules in this tab - see
Add an Incoming Whitelist Filtering Rule
.
n
Default Rules - Displays the default rules that apply to all domains using default settings (where no changes have been made at Domain level to filtering settings,
Whitelist, Blacklist, Quarantine Threshold etc.).
n
Global Rules - Displays all rules that apply to all domains regardless of default settings.
All existing rules are displayed in the table.
2.
Use the
Query Rules
panel to filter existing rules and click on
Show Results
to display all matching results.
In this page you can also: n n n
Add rule - Using the
Add rule
link - see
Add an Incoming Whitelist Filtering Rule
.
Import rules from CSV - Using the
Import rules from CSV
link above the Query Rules panel.
Export rules as CSV - Using the
Export rules as CSV
link above the Query Rules panel.
Add an Incoming Whitelist Filtering Rule
1.
In the Admin Level or Domain Level Control Panel, select
Incoming - Whitelist filtering rules
.
The
Domain Rules
tab is displayed in the
Incoming whitelist filtering rules
page.
2.
Click on
Add rule
:
28
Admin Level Control Panel
The dialog that is displayed here depends on whether you have enabled or disabled the
'
Use advanced custom filtering rules
' option in the
User profile
page. For more information, see
Manage Your Admin User Profile
or
Manage Your Domain User Profile .
If the option is Inactive you will see the '
Add a new simple whitelist filtering rule
' dialog:
29
Admin Level Control Panel
If this is Active, you will see the '
Add a new advanced whitelist filtering rule
' dialog:
30
Admin Level Control Panel
3.
Choose from the following filters:
31
Admin Level Control Panel
F
IELD
/O
PTION
Simple page
Rule name
Match
Advanced page
Domain
Rule name
Priority
Header name
Regular expression
D
ESCRIPTION
Add the name of this rule
Use the Match fields to structure your rule
If you are accessing this page at the
Admin Level you need to choose the domain you want to apply the rule to from those available in the
Domain
dropdown. (When you are accessing this page at the Domain Level, the system applies the rule to the logged in domain).
Enter the name you want to give this rule in the
Rule name
field.
In the
Priority
field enter a number to represent the priority given to the rule.
Note
- Rules are evaluated by
Priority from the lowest number to the highest number, until one matches or all rules have been checked.
All Whitelist rules are checked before Blacklist rules.
If you want to restrict the check to a particular header, enter the
name
Header
. You may enter a regular expression here, if required.
Enter the regular expression for the rule in the field.
Regular expression
32
Admin Level Control Panel
F
IELD
/O
PTION
D
ESCRIPTION
Tip
- Use the
Cheatsheet
panel on the right of the page for examples of how to build your regex.
Match
Flags
Choose what you want the rule to match. The following options are available:
The following flags are available: n i (ignore case) n m (^ and $ match start and end of line), n s (. matches newline) n x (allow spaces and comments)
4.
Click
Save
when finished.
Incoming Blacklist Filtering Rules
In the Incoming Blacklist Filtering Rules page you can view all blacklist filtering rules that have been set up for your domain(s) and you can also add new ones. Incoming mail that matches any of the rules will always be blocked.
The rules are based on Python's regular expression (regex) syntax. (For more information on regular expressions, see regex101.com
).
You can access this page at the Admin Level and the Domain Level.
n n
View Incoming Blacklist Filtering Rules
Add an Incoming Blacklist Filtering Rule
Note
- You can also set up Blacklist filtering rules for outbound mail - see
33
Admin Level Control Panel
View Incoming Blacklist Filtering Rules
View all the Blacklist Filtering Rules that, when applied to a domain, will always block matching incoming mail.
1.
In the Admin Level or Domain Level Control Panel, select
Incoming - Blacklist filtering rules
.
The
Incoming blacklist filtering rules
page is displayed.
There are three tabs: n
Domain Rules - Rules that apply to a specific domain. You can add new rules in this tab - see
Add an Incoming Blacklist Filtering Rule .
n
Default Rules - Displays the default rules that apply to all domains using default settings (where no changes have been made at Domain level to filtering settings,
Whitelist, Blacklist, Quarantine Threshold etc.).
n
Global Rules - Displays all rules that apply to all domains regardless of default settings.
All existing rules are displayed in the table.
2.
Use the
Query Rules
panel to filter existing rules and click on
Show Results
to display all matching results.
In this page you can: n n n
Add rule - Using the
Add rule
link - for details see
Add an Incoming Blacklist Filtering
.
Import rules from CSV - Using the
Import rules from CSV
link above the
Query Rules
panel.
Export rules as CSV - Using the
Export rules as CSV
link above the
Query Rules
panel.
Add an Incoming Blacklist Filtering Rule
1.
In the Admin Level or Domain Level Control Panel, select
Incoming - Blacklist filtering rules
.
The
Domain Rules
tab is displayed in the
Incoming blacklist filtering rules
page.
2.
Click on
Add rule
:
34
Admin Level Control Panel
The dialog that is displayed here depends on whether you have enabled or disabled the
'
Use advanced custom filtering rules
' option in the
User profile
page. For more information, see
Manage Your Admin User Profile
or
Manage Your Domain User Profile
If the option is Inactive you will see the '
Add a new simple blacklist filtering rule
' dialog:
35
Admin Level Control Panel
If this is Active, you will see the '
Add a new advanced blacklist filtering rule
' dialog:
36
Admin Level Control Panel
3.
Choose from the following filters:
37
Admin Level Control Panel
F
IELD
/O
PTION
Simple page
Rule name
Match
Advanced page
Domain
Rule name
Priority
Header name
Regular expression
D
ESCRIPTION
Add the name of this rule
Use the Match fields to structure your rule
If you are accessing this page at the
Admin Level you need to choose the domain you want to apply the rule to from those available in the
Domain
dropdown. (When you are accessing this page at the Domain Level, the system applies the rule to the logged in domain).
Enter the name you want to give this rule in the
Rule name
field.
In the
Priority
field enter a number to represent the priority given to the rule.
Note
- Rules are evaluated by
Priority from the lowest number to the highest number, until one matches or all rules have been checked.
All Whitelist rules are checked before Blacklist rules.
If you want to restrict the check to a particular header, enter the
name
Header
. You may enter a regular expression here, if required.
Enter the regular expression for the rule in the field.
Regular expression
38
Admin Level Control Panel
Match
Flags
F
IELD
/O
PTION
D
ESCRIPTION
Tip
- Use the
Cheatsheet
panel on the right of the page for examples of how to build your regex.
Choose what you want the rule to match. The following options are available:
The following flags are available: n i (ignore case) n m (^ and $ match start and end of line), n s (. matches newline) n x (allow spaces and comments)
4.
Click
Save
when finished.
Outgoing Filtering - Admin Level
From the Outgoing panel you can perform the following tasks: n n
View Outgoing Bandwidth Overview
- View graphical representation of outgoing bandwidth usage as a total and per domain. Displays data in the same way as the
Incoming Bandwidth overview (see
View Incoming Bandwidth Overview
Manage Identities - Admin Level
- Manage the identities that you have previously set up in the Manage outgoing users page. For example, if you see an identity is sending a lot of
Spam, you can lock it from here while you investigate the issue.
n n
Manage Outgoing Users - Admin Level
- Set up the authenticating users that will allow the outgoing Mail Transfer Agent (MTA) to authenticate mail through the Mail Assure outbound filter.
Generate Outgoing Report - Admin Level
- Report on outgoing mail sent from your domains in the last hour, 6 hours, 12 hours, 24 hours or 7 days.
39
Admin Level Control Panel n
Outgoing Blacklist Filtering Rules
- View existing and create new rules to always block specific outgoing mail from your domains.
View Outgoing Bandwidth Overview
To view the incoming bandwidth usage per domain:
1.
In the
Outgoing
panel, click on
Bandwidth overview
.
2.
Specify the Date range in the fields provided and click on
Show
.
3.
The total bandwidth usage amount for all domains is shown along with the individual usage per domain - in the form of a pie chart and a table.
Manage Identities - Admin Level
In the Manage identities page, you can manage the identities that you have previously set up in the
Manage Outgoing Users - Admin Level
page. For example, if you see an identity is sending a lot of Spam, you can lock it here while you investigate the issue.
1.
Go to
Outgoing - Manage identities
.
2.
Use the
Query Rules
panel to set up and save search filters for the identities you have set up in your domains.
3.
Use the
Customise
dropdown to choose which columns you want to show in your results.
You must select at least one column from the following: n
Domain n
User n
Identity n
Lock time n
Reason n
Locked n
Automatic unlocks
4.
Click on
Show results
to display the matching results.
5.
The identities are listed. Click on the dropdown to the left of an identity to choose from the following tasks:
40
Admin Level Control Panel n
Lock - If you select this, the identity will not be able to relay any emails until it is unlocked manually.
n
Unlock - Select this to unlock the identity.
Tip
- You can enable automatic locking of identities. This means that if an identity sends approximately 5 spam messages in 10 minutes, it will be locked automatically. You can configure this in the
Outgoing User Settings
page:
Go to
Outgoing - Manage Users
and select
Edit
from the dropdown alongside the user. The
Outgoing User Settings
page is displayed. Select
Yes
in the
Lock identities automatically
dropdown. See
for more information on locking.
n
Reset the count of automatic locks - Resets the automatic lock counter back to 0.
Manage Outgoing Users - Admin Level
Authentication for outgoing mail is set up in the
Manage users
page. In this page you choose how the outgoing Mail Transfer Agent (MTA) will authenticate to send mail through the Mail
Assure outbound filter.
There are three types of user: n n n
Authenticating IP or range (e.g. a smarthost) - Any connections from the IP or IP range are considered authenticated and do not require SMTP AUTH.
Authenticating user - Uses the username@domain and selected password for SMTP AUTH.
Authenticating domain - Uses the domain name and selected password for SMTP AUTH.
In the Admin Level Control Panel, go to
Outgoing - Manage Users
. The
Manage Users
page is displayed.
Tip
- We recommend using the Authenticating domain option, entering the username and password you have, then all mail to that domain is going to route through the connector regardless of what IP address it comes from.
41
Admin Level Control Panel
All users set up for all your domains are listed here. Use the search field at the top of the page to find a specific user.
You can perform the following tasks: n n
42
Admin Level Control Panel
Add an Outgoing User
1.
Click on
Outgoing - Manage user
.
2.
In the
Add a user
panel, choose which type of user you want to add by selecting the relevant tab (
Authenticating IP or range
,
Authenticating user
or
Authenticating domain
(see
Manage Outgoing Users - Admin Level
for a description of each)).
3.
Enter the user details and click on
Add & Configure
.
43
Admin Level Control Panel
The
Outgoing User Settings
page is displayed:
44
Admin Level Control Panel
45
Admin Level Control Panel
4.
Configure the following user settings: n n
Password - Set the password for the username authenticated outgoing user (not applicable for IP outgoing users).
Identification Method - Choose from: “envelope sender”, “authentication user” or “Header” as the identification method:
Envelope
Sender
Authentication
User
Header
Use this if your system enforces the “envelope sender” (or MAIL
FROM value).
The outgoing user’s authentication details. This is the best choice when you are providing unique usernames and passwords for each outgoing user, rather than using a smarthost system.
If you choose this option, you are able to add any number of identification headers that we should search for in the message. For example, you might have a system that adds an “X-Client-ID” header, which uniquely identifies each of your end users. For each header, you may choose to either use the entire header value as the identity, or you can provide a regular expression that extracts out a part of the value to use. You may also choose to have our software remove the header after we have found the identity, if you don’t want this to be available to the recipient of the message.
Important - We strongly recommend that an identity Header is set for all outgoing traffic. This makes monitoring and taking action against spammers much easier.
n
Automatic lock - When enabled, and when the system detects that the user has sent approx 5 spam messages in 10 minutes, the user will be locked automatically. The user cannot send mail until they are unlocked (the administrator can do this from the alert sent or from the
Manage Outgoing Users - Admin Level
page.
Important - We recommend that you do not enable the Automatic lock if you are using IP authentication within a smarthost.
n
Lock Identities Automatically - This spam prevention, when enabled and the system detects that the identity has sent approx 5 spam messages in 10 minutes, the identity will be locked automatically. The identity cannot send mail until they have been unlocked. The identity can be unlocked from the
Manage Identities - Admin Level
page.
46
Admin Level Control Panel n n n n n n n n n n n n
User and Identity Lock timeout - The amount of time an outgoing user or identity will be unable to send messages. This only applies to if you are using the Automatic User Lock or the Automatic Identity Lock.
Maximum unlocks by timeout - The maximum number of times the user will be automatically unlocked after the time-out value has passed. After this has been depleted, the user will have to be manually unlocked.
Enable outgoing connection limits - Enable or disable limits on outgoing connections whether spam or not, to prevent bulk mailing.
Limit per month - The amount of outgoing connections that can be opened per month.
Limit per week - The amount of outgoing connections that can be opened per week.
Limit per hour - The amount of outgoing connections that can be opened per hour.
Limit per minute - The amount of outgoing connections that can be opened per minute.
DKIM Selector- Choose the selector you wish to use at domain level. Use the default or add one that has been generated using the
tool. Once you have created the certificate you need to add the TXT to your DNS.
Maximum number of recipients per day - The maximum number of recipients the user can send emails to daily.
Invalid Recipient limit - The limit for sending emails to invalid recipients (not applicable at
Domain Level).
Maximum days to retry - The maximum number of days the message will be retried for delivery (this applies to messages stuck in the delivery queue) (not applicable at Domain
Level).
Quarantine Response – When an outbound message is detected as spam and it goes into the outbound quarantine the response you send back to the sender can be Rejected or
Accepted. If 'Rejected', legitimate senders will receive a bounce message when their mail gets blocked and quarantined even though the message is stored in the quarantine. If
'Accepted' the SMTP response would be ‘Accept’ and the message would still be blocked and shown in the quarantine but the sender will not receive a bounce message and will not know that the message is in the outbound quarantine.
47
Admin Level Control Panel
Note
- The administrator will be notified that there are messages in the outbound quarantine in the Abuse Report by entering the Adminstrator's contact email address in the
Outgoing - Settings
page in the Domain Level Control Panel (see
Configure the Abuse Report Address
). Alternatively, use the Email Scout Reports to create a schedule report with details of outbound quarantine content.
Tip
- Administrators may use this option to prevent the sender receiving notifications when messages are quarantined. For example, they may want to review a rejected message before releasing it.
n
Message archiving for senders - Enabled/Disabled – If enabled, all outgoing messages from the outgoing user will be archived.
Edit an Outgoing User
1.
Go to
Outgoing - Manage users
.
2.
Click on the dropdown alongside the user you want to edit and select
Edit
.
The
Outgoing User Settings
page is displayed.
3.
Edit the user settings as necessary. For details of each setting see
.
4.
Click
Save
when finished.
Generate Outgoing Report - Admin Level
Report on outgoing mail sent in the last hour, 6 hours, 12 hours, 24 hours or 7 days. This report displays the total number of outgoing messages per domain - and also the number of messages grouped by either identity, envelope sender or from header.
You can access this facility from the Admin and the Domain level Control Panels:
48
Admin Level Control Panel
1.
Go to
Outgoing - Outgoing reports
. The Outgoing reports page is displayed.
2.
Enter the domain name of the domain you want to report on. Add more domains by using the
Add another domain
button.
3.
From the
Period
dropdown, choose from: n
6 hours n
12 hours n
24 hours n
7 days
4.
Alongside
Classification
, select which mail you want to include - either Accepted,
Rejected or All.
5.
In the
Group by
dropdown, select how you want your mail grouped in the report output:
By identity, envelope sender or from header.
6.
Click on
Show
to generate your report.
The report details are displayed at the bottom of the page.
49
Admin Level Control Panel
Tip
- You can also access the
Outgoing reports
facility from the Domain Level Control
Panel - where you can report on the domain you are logged into. See
Outgoing Blacklist Filtering Rules
In the Outgoing Blacklist Filtering Rules page you can view all blacklist filtering rules that have been set up for your domains' outgoing mail and you can also add new ones. Outgoing mail that matches any of the rules will always be blocked.
The rules are based on Python's regular expression (regex) syntax. (For more information on regular expressions, see regex101.com
).
You can access this page at the Admin Level and the Domain Level.
n n
View Outgoing Blacklist Filtering Rules
Add an Outgoing Blacklist Filtering Rule
View Outgoing Blacklist Filtering Rules
View all the Blacklist Filtering Rules that, when applied to a domain, will always block matching outgoing mail.
1.
In the Admin Level or Domain Level Control Panel, select
Outgoing - Blacklist filtering rules
.
The
Outgoing blacklist filtering rules
page is displayed.
There are three tabs: n
Domain Rules - Rules that apply to a specific domain. You can add new rules in this tab - see
Add Outgoing Blacklist Filtering Rule
.
n
Default Rules - Displays the default rules that apply to all domains using default settings (where no changes have been made at Domain level to filtering settings,
Whitelist, Blacklist, Quarantine Threshold etc.).
n
Global Rules - Displays all rules that apply to all domains regardless of default settings.
All existing rules are displayed in the table.
2.
Use the
Query Rules
panel to filter existing rules and click on
Show Results
to display all matching results.
50
Admin Level Control Panel
In this page you can: n n n
Add rule - Using the
Add rule
link - for details see
Add Outgoing Blacklist Filtering Rule
.
Import rules from CSV - Using the
Import rules from CSV
link above the
Query Rules
panel.
Export rules as CSV - Using the
Export rules as CSV
link above the
Query Rules
panel.
Add Outgoing Blacklist Filtering Rule
1.
In the Admin Level or Domain Level Control Panel, select
Outgoing - Blacklist filtering rules
.
The
Domain Rules
tab is displayed in the
Outgoing blacklist filtering rules
page.
2.
Click on
Add rule
:
The dialog that is displayed here depends on whether you have enabled or disabled the
'
Use advanced custom filtering rules
' option in the
User profile
page. For more information, see
Manage Your Admin User Profile
or
Manage Your Domain User Profile
If the option is Inactive you will see the '
Add a new simple blacklist filtering rule
' dialog:
51
Admin Level Control Panel
If this is Active, you will see the '
Add a new advanced blacklist filtering rule
' dialog:
52
Admin Level Control Panel
3.
Choose from the following filters:
53
Admin Level Control Panel
F
IELD
/O
PTION
Simple page
Rule name
Match
Advanced page
Domain
Rule name
Priority
Header name
Regular expression
D
ESCRIPTION
Add the name of this rule
Use the Match fields to structure your rule
If you are accessing this page at the
Admin Level you need to choose the domain you want to apply the rule to from those available in the
Domain
dropdown. (When you are accessing this page at the Domain Level, the system applies the rule to the logged in domain).
Enter the name you want to give this rule in the
Rule name
field.
In the
Priority
field enter a number to represent the priority given to the rule.
Note
- Rules are evaluated by
Priority from the lowest number to the highest number, until one matches or all rules have been checked.
All Whitelist rules are checked before Blacklist rules.
If you want to restrict the check to a particular header, enter the
name
Header
. You may enter a regular expression here, if required.
Enter the regular expression for the rule in the field.
Regular expression
54
Admin Level Control Panel
Match
Flags
F
IELD
/O
PTION
D
ESCRIPTION
Tip
- Use the
Cheatsheet
panel on the right of the page for examples of how to build your regex.
Choose what you want the rule to match. The following options are available:
The following flags are available: n i (ignore case) n m (^ and $ match start and end of line), n s (. matches newline) n x (allow spaces and comments)
4.
Click
Save
when finished.
Email Archiving
Mail Assure's Email Archiving facility allows you to back up all of your organization's mail and access it easily if needed. It also allows you to maintain legal compliance.
To use the system's Archiving features you must first ensure that your domain has been added to the system and the Archive product has been enabled for your domain.
n n n
To enable archiving on a domain, see
.
To view Archive Usage per domain, see
For all Domian level archiving features, see
.
View Archive Usage per Domain
In the Admin Control Panel, under
Archive
, click on
Usage
.
55
Admin Level Control Panel
In the
Usage
page, your domains are listed, showing the status of the Archive product: n n n
Available - The Archive is available for this account.
Enabled - The Archive is activated for the domain, however this does not imply that there has been any activity. See
.
Active - If active, the domain is actively using the Archive product.
In the
Storage used
column, you can see how much storage is being used by the Archive for each domain. Click on the refresh icon to see the up-to-date storage used.
Private Label
From the Private Label panel you can: n n n
Manage the branding of your system - See
.
Set up your private brand login / Oath Settings - See
.
Manage your Protection Report templates -
Manage Protection Report Templates .
Branding Management
You can fully customize your system with your own branding requirements. Branding options include logos, custom email headers, web interface, customized protection reports & copyright notices.
In the
Private Label
panel select
Branding Management
. The
Edit brand
page is displayed:
56
Admin Level Control Panel
The following settings can be managed: n
Hostname - Add your own hostname here. If you wish to change this and have your own custom URL, you must create a CNAME for this on your DNS server.
57
Admin Level Control Panel
Note
- This hostname will show up in the Protection reports. You can redirect clients to login via your own links and any system messages e.g. password reset messages, will show this custom hostname.
n n n n n n n
Brandname - Customise the brandname. This is displayed in the bottom left of all Mail
Assure application pages.
Branding Logo - Customise the logo that is displayed in the Login screen, the Protection reports and the top left corner of the Dashboard/Control Panel.
Favicon - Customise the icon displayed in the browser address bar alongside your custom
URL.
HTTPS SSL certificate - In this section you can choose the option to 'Generate and manage a TLS certificate for me via Let's Encrypt'. This means that you will not need to go through the lengthy manual set up process which involves generating a CSR, requesting a certificate (and any intermediate certificates) from a Certificate Authority (CA) and uploading to the system. The system will do this automatically for you including renewing certificates when required.
Colour schemes for Admin, Domain and Email Level Control Panels.
Hide Header - Select this if, for privacy reasons, you do not want to show the raw header transactions from the filtering servers.
Reset - Reset branding back to the system defaults.
Configure OAuth Settings
In order to be able to connect with OAuth, a brand should be set. Configure your credentials to enable OAuth on your Control Panel:
1.
Click on
Private label - OAuth Settings
.
2.
The Private brand login / OAuth page is displayed.
3.
Your service provider should be able to provide the following information to enter here: n
Enable OAuth n
Provider URL n
Client ID n
Client Secret
58
Admin Level Control Panel n
Token Endpoint n
Autorization Endpoint n
User info endpoint n
User identification method - Select Verified Email n
Jwks Uri n
Use Nonce validation - Select Yes.
4.
Click
Save
.
Manage Protection Report Templates
Protection Report Templates are set up by language. When you choose to generate a Protection report, the template used depends on the language selected in that particular report. For example, if you generate an On-demand Domain Report in English, the English version template is used.
In this page you can edit existing Protection Report Templates and create new ones in a different language.
To access the protection report templates:
Click on
Private Label - Protection Report Templates
.
The Protection report templates page is displayed and lists all the reports in the languages available.
You can perform the following tasks: n
Edit a template - Click on the Edit icon to make changes to a template.
n
Copy an existing template to create a new template in a new language - Click on the Copy icon alongside the template you want to copy.
n
Create a new template for another language - Click on the
Create new report template
link at the top of the page to create a new template.
Tip
- Use the Protection Report Template Notes at the bottom of the page for guidance.
59
Admin Level Control Panel
Note
- You can add a new logo to your Protection Reports in the
page.
Server
n n n n
Manage Email Notifications Templates
View API Calls History - Admin Level
View Control Panel API Calls
1.
Click on
Server - Control Panel API Calls
to open a web page describing all the API calls used by the system.
2.
Click to expand groups to see API Calls in that group.
3.
Click on an API call to see details.
60
Admin Level Control Panel
Manage Server Settings
The settings page contains a number of configurable settings including: the default settings for your purchased products; the administrator's contact details; the date and time format and timezone; chosen languages etc.
In the Admin Level Control Panel, click on
Server - Settings
.
The following options/settings are displayed:
61
Admin Level Control Panel
Available Products
Displays which products are available. You can choose to auto-enable each product for new domains that are created by ticking the box alongside the product.
Server Settings
n n n n n n n n n n n n n n n n
1-click Log In Script - Download a sample script which shows how to integrate the oneclick log in feature into your own systems (e.g. custom control panel), allowing users to log in without the need for them to enter their password.
Administrator’s contact - Administrator's Email address
Support URL
Accepted method by Support URL - GET/POST
Parameter name to send username value to Support URL
Parameter name to send email value to Support URL
Logout URL
Timezone
Date and time format
Default language
Available languages
Force secure (HTTPS) connections
Default Items per page - The number of items in search results tables per page.
Email notifications From address
Email notifications Reply-To address
APS to Control Panel access message
Default MX Hostnames
The default MX hostnames listed here are used by the
to verify whether all of your domains have the correct MX records configured. See
for instruction on how to enter the correct ones in your domain provider's DNS control panel.
62
Admin Level Control Panel
Change Your MX Records
To route incoming email for your domain through the Mail Assure filtering cloud you need to update the MX records in your domain provider's DNS settings.
Prior to changing the MX records, you should check your records' TTL value. We recommend a maximum value of '3600' in order to propagate any DNS changes faster. Higher TTLs can lead to spam not being filtered by our nodes, until the previous record expires, when the TTL is reached.
1.
In your domain provider's DNS control panel add the following records: n mx1.mtaroutes.com (priority 10) n mx2.mtaroutes.com (priority 20) n mx3.mtaroutes.com (priority 30) n mx4.mtaroutes.com (priority 40)
2.
Remove the original MX records.
Note
- Some DNS control panels require you to use a trailing dot (.) after the hostname.
Please check with your DNS provider if this is the case for you.
Removal of old MX records is required to make sure all emails are filtered through the Mail
Assure cloud, as spammers actively try different MX records (such as the highest numbered priority) to bypass spam filters.
DNS changes may take some time before they are picked up by the DNS resolvers world-wide, so email may continue to deliver directly to the original MX records without filtering for some time depending on the TTL value set on the DNS server.
You can check using the
Log Search
if the message has passed through the Mail Assure filtering nodes.
Tip
- To check that your system is using the correct MX records, use the
.
63
Admin Level Control Panel
To Access the Log Search:
1.
In the Admin Level Control Panel, select
Domains - Overview
.
2.
Click on the relevant domain to display the domain's Dashboard.
3.
In the
Incoming
panel, click on
Log search
. For instruction on how to use this page, see
Manage Email Notifications Templates
This page lists all available email notifications templates for email notifications sent out from the Control Panel. If required you can edit any of these - and restore them to their defaults if necessary.
In the Admin level Control Panel, go to
Server - Email notifications templates
to open the
Email notifications template
page:
Edit an Email Notification Template
Click on the dropdown alongside the template you want to edit and select
Edit
.
64
Admin Level Control Panel
The generic template settings are displayed at the top of the page followed by the email subject and body for each language available:
65
Admin Level Control Panel
66
Admin Level Control Panel
In the generic settings at the top of the page, you can choose to customize the 'From' address of the notification.
You can also make any changes to any of the different language notifications where required.
Once you've made your changes, click on
Save
at the bottom of the page.
View API Calls History - Admin Level
You can view your API calls history at the Admin Level and the Domain Level. At the Admin Level you can see all API calls for all your domains. At Domain Level you can see the call history for the logged in domain.
To access the API calls history from Admin Level:
1.
In the Admin Level Control Panel, click on
Server - API calls history
.
2.
Input the
Date range
of the logs you want to see.
3.
From the
API method
dropdown, select the method you want to view.
4.
Enter the relevant
Domain
(if you are accessing the page from the Domain Level, your domain will be displayed here and cannot be changed).
5.
Optionally enter the
Client username
to show specific results.
67
Admin Level Control Panel
6.
Click on
Start search
to display matching results:
Whitelist/Blacklist
You can use Mail Assure's Whitelist to list email addresses from which incoming mail (which would usually be identified as spam) will always be allowed. Conversely, use the Blacklist to block incoming mail from known spammers.
You can do this from the Admin Level, Domain Level and Email Level Control Panels: n n n
Admin Level - Manage sender/recipient whitelisting and blacklisting for all of your domains.
Domain Level - Manage sender/recipient whitelisting and blacklisting for that specific domain.
Email Level - Manage your own sender whitelisting and blacklisting.
68
Admin Level Control Panel
You can perform the following tasks: n n n n
- Whitelist incoming mail from specific email senders.
- Whitelist incoming mail to specific email recipients.
- Blacklist incoming mail from specific email senders.
- Blacklist incoming mail to specific email recipients.
Admin and Domain users can also access the Sender Blacklist for outgoing mail. See
Manage Sender Whitelist
Incoming mail received from senders listed in the whitelist will always be allowed.
In the Admin Level, Domain Level or Email Level Control panel, select
Whitelist/Blacklist -
Sender whitelist
.
The
Sender Whitelist
page is displayed:
There are three tabs available:
69
Admin Level Control Panel n n n
Sender Whitelist - Domain
- This tab allows you to manage the sender whitelist for your domain. You can add, import and export.
Sender Whitelist - Admin
- Anything applied on this tab applies to all domains underneath this one. You can add, import and export.
Sender Whitelist - Default
- In this tab you can view/export any default whitelist senders set up at the super admin level.
If you are accessing as an Email user there are no tabs - just the main page.
In the
Domain
and
Admin
tabs, the following options/fields are available:
O
PTION
/F
IELD
Add whitelist sender
Import senders from CSV
Export senders as CSV
Query Rules
Group results by
D
ESCRIPTION
Click to add a sender to the whitelist. See
.
Drag and drop or select .csv file for upload to the Sender Whitelist
Export all your listed senders as .csv file
The Query Rules panel allows you to search for existing whitelisted senders.
Once you have set up your query rules, click on
Show Results
to display all matching senders. If you do not use any of the Query Rules, clicking on
Show
Results
will display a list of all whitelisted senders.
Add new query rules as required using the
+ New rule
link.
Choose if you want to group results by
Domain, Local-part, Sender flag ,
Address or leave the default No grouping.
70
Admin Level Control Panel
O
PTION
/F
IELD
Columns to be displayed
D
ESCRIPTION
Customise which columns you want to be displayed.
Displays matching results Show results
When you click on
Show results
to display matches you can perform the following actions on individual or multiple existing whitelisted senders: n n n
Edit
Remove
Export as .csv
Add Sender to Whitelist
1.
Click on
Add whitelist sender
to open the dialog:
2.
If you are accessing this from the Admin Level, the
Domain
dropdown is displayed. Select the relevant domain.
71
Admin Level Control Panel
3.
In the
Local-part
field, you can specify the local-part of a particular recipient here, or leave blank to apply to the whole domain.
4.
Choose which address you want to apply by selecting from the following
Sender Flags
: n
Apply to Envelope Sender - The SMTP Envelope from address n
Apply to From: Address - The MIME message address n
Apply to both
5.
In the
Address
field, enter the email address of the sender you want to whitelist.
6.
Click on
Save
to add the sender to the whitelist.
Manage Recipient Whitelist
Incoming mail sent to recipients listed in the Recipient Whitelist will always be allowed.
Important
- Please be very careful which recipients you whitelist here. This is generally not intended for normal mail recipients as this will allow ALL mail to reach the recipient's mailbox unfiltered. This is primarily used for abuse@ addresses, Postmaster@ addresses or any address that should not have filtering (for example, an address used to send outbound abuse reports to).
This is also used when people want to filter a whole domain, but have some users have no filtering (and upsell). Then they simply add the email users here, and have all the email including spam be delivered.
In the Admin Level or Domain Level Control panel, select
Whitelist/Blacklist - Recipient whitelist
.
The
Recipient Whitelist
page is displayed:
72
Admin Level Control Panel
There are three tabs available: n n n
Recipient Whitelist - Domain
- This tab allows you to manage the recipient whitelist for your domain. You can add, import and export.
Recipient Whitelist - Admin
- Anything applied on this tab applies to all domains underneath this one. You can add, import and export.
Recipient Whitelist - Default
- In this tab you can view/export any default whitelisted recipients set up at the super admin level.
In the
Domain
and
Admin
tabs, the following options/fields are available:
O
PTION
/F
IELD
Add whitelist recipient
Import recipients from CSV
Export recipients as CSV
D
ESCRIPTION
Click to add a recipient to the whitelist.
See
.
Drag and drop or select .csv file for upload to the recipient whitelist
Export all your listed recipients as .csv
73
Admin Level Control Panel
O
PTION
/F
IELD
Query Rules
Group results by
Columns to be displayed
D
ESCRIPTION file
The Query Rules panel allows you to search for existing whitelisted recipients.
Once you have set up your query rules, click on
Show Results
to display all matching recipients. If you do not use any of the Query Rules, clicking on
Show
Results
will display a list of all whitelisted recipients.
Add new query rules as required using the
+ New rule
link.
Choose if you want to group results by
Domain, Local-part, or leave the default
No grouping.
Customise which columns you want to be displayed.
Displays matching results Show results
When you click on
Show results
to display matches you can perform the following actions on individual or multiple existing whitelisted recipients: n n n
Edit
Remove
Export as .csv
74
Admin Level Control Panel
Add Recipient to Whitelist
1.
Click on
Add whitelist recipient
to open the dialog:
2.
Select the domain that the recipient belongs to.
3.
Enter the local-part of the recipient's email address.
To whitelist all recipients (ie. filter no mail) enter * in the Local-part field.
4.
Click
Save
. The recipient is added to the whitelist.
Manage Sender Blacklist
Incoming mail received from senders listed in the Sender Blacklist will always be blocked.
In the Admin Level, Domain Level or Email Level Control panel, select
Whitelist/Blacklist -
Sender blacklist
.
The
Sender Blacklist
page is displayed:
75
Admin Level Control Panel
There are three tabs available: n n n
Sender Blacklist - Domain
- This tab allows you to manage the sender blacklist for your domain. You can add, import and export.
Sender Blacklist - Admin
- Anything applied on this tab applies to all domains underneath this one. You can add, import and export.
Sender Blacklist - Default
- In this tab you can view/export any default blacklisted senders set up at the super admin level.
If you are accessing as an Email user there are no tabs - just the main page.
In the
Domain
and
Admin
tabs, the following options/fields are available:
O
PTION
/F
IELD
Add blacklist sender
D
ESCRIPTION
Click to add a sender to the blacklist. See
76
Admin Level Control Panel
O
PTION
/F
IELD
Import senders from CSV
Export senders as CSV
Query Rules
Group results by
Columns to be displayed
D
ESCRIPTION
Drag and drop or select .csv file for upload to the Sender Blacklist.
Export all your listed senders as .csv file
The Query Rules panel allows you to search for existing blacklisted senders.
Once you've set up your query rules, click on
Show Results
to display all matching senders. If you don't use any of the Query
Rules, clicking on
Show Results
will display a list of all blacklisted senders.
Add new query rules as required using the
+ New rule
link.
Choose if you want to group results by
Domain, Local-part, Sender flag ,
Address or leave the default No grouping.
Customise which columns you want to be displayed.
Displays matching results Show results
When you click on
Show results
to display matches you can perform the following actions on individual or multiple existing blacklisted senders: n n n
Edit
Remove
Export as .csv
77
Admin Level Control Panel
Add Sender to Blacklist
1.
Click on
Add blacklist sender
to open the dialog:
2.
If you are accessing this from the Admin Level, the
Domain
dropdown is displayed. Select the relevant domain.
3.
In the
Local-part
field, you can specify the local-part of a particular recipient here, or leave blank to apply to the whole domain.
4.
Choose which address you want to apply by selecting from the following
Sender Flags
: n
Apply to Envelope Sender - The SMTP Envelope from address n
Apply to From: Address - The MIME message address n
Apply to both
5.
In the
Address
field, enter the email address of the sender you want to blacklist.
6.
Click on
Save
to add the sender to the blacklist.
Manage Recipient Blacklist
Incoming mail sent to recipients in the Recipient Blacklist will always be blocked.
78
Admin Level Control Panel
In the Admin Level or Domain Level Control panel, select
Whitelist/Blacklist - Recipient blacklist
.
The
Blacklist recipients
page is displayed:
There are three tabs available: n n n
Recipient Blacklist - Domain
- This tab allows you to manage the recipient blacklist for your domain. You can add, import and export.
Recipient Blacklist - Admin
- Anything applied on this tab applies to all domains underneath this one. You can add, import and export.
Recipient Blacklist - Default
- In this tab you can view/export any default blacklisted recipients set up at the super admin level.
From the Admin Level Control Panel you will see all three tabs. From the Domain level you will only see the
Domain
and
Default
tabs.
In the
Admin
and
Domain
tabs, the following options/fields are available:
79
Admin Level Control Panel
O
PTION
/F
IELD
Add blacklist recipient
Import recipients from CSV
Export recipients as CSV
Query Rules
Group results by
Columns to be displayed
D
ESCRIPTION
Click to add a recipient to the blacklist.
See
Add Recipient to the Blacklist
.
Drag and drop or select .csv file for upload to the recipient blacklist
Export all your listed recipients as .csv
file
The Query Rules panel allows you to search for existing blacklisted recipients.
Once you have set up your query rules, click on
Show Results
to display all matching recipients. If you do not use any of the Query Rules, clicking on
Show
Results
will display a list of all blacklisted recipients.
Add new query rules as required using the
+ New rule
link.
Choose if you want to group results by
Domain, Local-part, or leave the default
No grouping.
Customise which columns you want to be displayed.
Displays matching results.
Show results
When you click on
Show results
to display matches you can perform the following actions on individual or multiple existing blacklisted recipients: n n
Edit
Remove
80
Admin Level Control Panel n
Export as .csv
Add Recipient to the Blacklist
1.
Click on
Add blacklist recipient
to open the dialog:
2.
Select the domain that the recipient belongs to.
3.
Enter the local-part of the recipient's email address.
4.
Click
Save
. The recipient is added to the blacklist.
Manage Outgoing Sender Blacklist
Outgoing mail sent from senders listed in the Sender Blacklist will always be blocked.
In the Admin Level and Domain Level Control Panel, select
Whitelist/Blacklist - Outgoing sender blacklist
.
The
Outgoing Sender Blacklist
page is displayed:
81
Admin Level Control Panel
There are two tabs available. The
Domain senders
tab allows you to manage the blacklist senders for your domain(s). The
Default senders
tab allows you to view/export any default blacklist senders set up at the super admin level.
In the
Domain senders
tab, the following options/fields are available:
O
PTION
/F
IELD
Add blacklist sender
Import senders from CSV
Export senders as CSV
Query Rules
D
ESCRIPTION
Click to add a sender to the blacklist. See
Drag and drop or select .csv file for upload to the
Sender Blacklist.
Export all your listed senders as .csv file
The Query Rules panel allows you to search for existing blacklisted senders. Once you've set up your query rules, click on Show Results to display all matching senders. If you don't use any of the Query
Rules, clicking on Show Results will display a list of all blacklisted senders.
82
Admin Level Control Panel
O
PTION
/F
IELD
Group results by
Columns to be displayed
Show results
D
ESCRIPTION
Add new query rules as required using the + New
rule link.
Choose if you want to group results by Domain, Localpart, Sender flag , Address or leave the default No grouping.
Customise which columns you want to be displayed.
Displays matching results
When you click on
Show results
to display matches you can perform the following actions on individual or multiple existing blacklisted senders: n n n
Edit
Remove
Export as .csv
Add Sender to Blacklist
1.
Click on
Add blacklist sender
to open the dialog:
83
Admin Level Control Panel
2.
If you are accessing this from the Admin Level, the
Domain
dropdown is displayed. Select the relevant domain.
3.
In the
Local-part
field, you can specify the local-part of a particular recipient here, or leave blank to apply to the whole domain.
4.
Choose which address you want to apply by selecting from the following
Sender Flags
: n
Apply to Envelope Sender - The SMTP Envelope from address n
Apply to From: Address - The MIME message address n
Apply to both
5.
In the
Address
field, enter the email address of the sender you want to blacklist.
6.
Click on
Save
to add the sender to the blacklist.
Webinterface users
n n n n
Manage Admin Users
Only Admin users with the appropriate access rights can add and manage other Admins.
In the Admin Level Control Panel, click on
Webinterface users - Manage Admins
.
84
Admin Level Control Panel
The
Manage Admins
page is displayed:
In this page you can carry out the following tasks: n n
Add - Add an Admin or add multiple Admins by uploading a CSV file. See
View overview of bandwidth usage per Admin.
The dropdown alongside each Admin user provides the following options: n n n n n n
Edit - Edit the Admin
Delete - Delete the Admin
Login as user - Log into the system as this Admin
Enforce 2FA - Enforce 2FA for this Admin.
Move admin - Move this Admin to another domain
Show sub-admins for this user - Show all Admins that this user has created (Admins created by an Admin or Sub-Admin become Sub-Admins of the user who created them).
85
Admin Level Control Panel
Add an Admin User
To create a Admin user you must be an Admin user and have the permission to add other
Admin users.
1.
Log into Mail Assure.
2.
In the Admin Level Control Panel, click on
Webinterface users - Manage admins
.
You can add multiple users using the
Upload CSV file
link or add each user individually.
3.
To add users individually, click on
Add
to open the
New admin creation
page.
The following Fields/Options are available:
F
IELD
/O
PTION
Username
Password/Confirm password
Status
Allow sub-admins
Allow actions on outgoing spam messages
D
ESCRIPTION
The user's username.
The user's password.
The user's email address.
Active - Activates the user so they can access the system.
Inactive - Inactivates the user so that they cannot access the system.
Allow - The user can create subadmins.
Deny - The user cannot create sub-admins.
Default - The user inherits the properties of the parent Admin user.
Allows the user to act on outgoing spam messages found in the Outgoing Log Search e.g.
Release, Train spam, Train not spam.
86
Admin Level Control Panel
F
IELD
/O
PTION
Allow control panel API usage
Available products
Protection for archived messages
Domain's Limit
D
ESCRIPTION
Allows the user to execute any of the API calls listed in the
Control Panel API Calls page see
.
Choose which products the user can access (Incoming mail,
Outgoing mail, Archiving) and whether they have access to the
Private label area of the application in which branding can be customized.
Active - The user will not be able to view/export archived message content unless they authenticate at Email level and are viewing their own messages.
When Active, sub-admins cannot over-ride this.
Inactive - The user will be able to view/export all other user's archived message content.
How many domains this admin can add. If you want to limit the number to two domains, then you can set the limit to 2, otherwise use 0 for unlimited domains.
87
Admin Level Control Panel
F
IELD
/O
PTION
D
ESCRIPTION
The limit is shared with your own limit. For example, if your license is of 20 domains, you cannot set the limit to 0 for a Sub-admin. You can set it to 20, however this means that you will be unable to add domains on your Admin account and all new added domains will be attributed to the Subadmin account.
4.
Enter the user details and click
Save
.
Manage Domain Users
Currently, only one user can be created per domain and only Admin users can manage domain users
In the Admin Level Control Panel, select
Webinterface users - Manage Domain Users
.
88
Admin Level Control Panel
The
Manage domain users
page is displayed:
If you already have a domain user per domain, you cannot add any others.
89
Admin Level Control Panel
If there are no domain users for a domain, click
Add
to add one or Upload CSV file - see
Add a Domain User
To create a user who can access their own Domain Level Control Panel, manage their own domain specific settings and use the system to view their domain's spam and access their emails in the event their server is offline or unavailable:
1.
Log into Mail Assure.
2.
In the Admin Level Control Panel, click on
Webinterface users - Manage domain users
.
You can add multiple users using the
Upload CSV file
link or add each user individually.
3.
To add users individually, click on
Add
to open the
New domain user creation
page.
4.
Select the domain you want the user to access/manage.
5.
Enter the user's
Password
and
address.
6.
Ensure the
Status
is set to Active.
7.
Click
Save
.
Tip
- To access the system, the Domain user must use their domain name in the Username field and the Password entered here when logging in.
Note
- You can only create one Domain user per domain.
Manage Email Users
In the Admin Level or Domain Level Control Panel, click on
Webinterface users - Manage email users
.
The
Manage Email users
page is displayed.
90
Admin Level Control Panel
In this page you can carry out the following tasks: n n n
Set up LDAP authentication - See
.
Add - Add an email user or add multiple users by uploading a CSV file.
View overview of bandwidth usage per email user.
The dropdown alongside each Admin user provides the following options: n n n n
Edit - Edit the user.
Delete - Delete the user.
Login as user - Log into the system as this user.
Enforce 2FA - Enforce 2FA (Two-Factor Authentication) for this user.
91
Admin Level Control Panel
Manage Permissions
The Manage Permissions page allows you to manage Mail Assure access permissions for
Domain and Email Users. If you are accessing the page from the Admin Level Control Panel, you can manage permissions for both Domain and Email Users. Alternatively, if you are accessing the Manage Permissions page from the Domain Level Control Panel you can only manage permissions for Email users.
You can decide which features they can access from each of the panels in the Dashboard (e.g.
Incoming, Outgoing, Archive, Server etc.) by enabling/disabling the GET, POST, PUT and DELETE actions alongside each feature as required, where: n n n n
GET - View data
POST - Create new entries
PUT - Edit existing entries
DELETE - Delete entries
To access the
Manage permissions
page: In the Admin Level or Domain Level Control Panel, select
Webinterface users - Manage permissions
.
Manage User Settings
In the User Settings page you can manage the system's global user settings.
In the Admin Level Control Panel, click on
Webinterface users - User settings
:
92
Admin Level Control Panel
Password Policies
Configure your password policies for webinterface users. The following settings will be enforced when passwords for new users are first set or when users' passwords are updated: n n n n n n n n
Minimum number of characters
Minimum number of digits
Minimum number of lowercase characters
Minimum number of uppercase characters
Minimum number of punctuation characters
Allow spaces: Yes/No
Allow common passwords: Yes/No
Allow dictionary words: Yes/No
Click on
Save
to save your changes.
Other - Admin Level
n n n
Manage Your Admin User Profile
Manage Your Admin User Profile
When you are logged in as an Admin user, the
User profile
page allows you to perform the following: n n n
Change your password - You need your old password in order to do this.
Change your email address
Activate/inactivate the feature preview option - When activated you can see any new features which are in preview mode (not yet released).
93
Admin Level Control Panel n n n
Activate/inactivate the advanced whitelist/blacklist custom filtering rules. By activating the
'
Use advanced custom filtering rules
' option you access the advanced page when creating a new custom whitelist or blacklist filtering rule. If this setting is
Inactive
the simple page is displayed. For more information, see
Add an Incoming Whitelist Filtering
,
Add an Incoming Blacklist Filtering Rule
or
Add Outgoing Blacklist Filtering Rule
Configure two step authentication
Enable notification when your account is accessed from a new location or IP address.
From the Admin Level Control Panel, select
Other - User profile
.
94
Admin Level Control Panel
95
Admin Level Control Panel
Compose Email
Use this facility to send email if your mail server is down or offline.
1.
Access this page from the Admin, Domain and Email Level Control Panels in
Other -
Compose email
.
2.
Once you have entered your recipient, subject and message content, click on
Send
Message
.
Network Tools
The
Network tools
page allows you to test mail transfer using the SMTP protocol by performing the following checks: n n
Sender callout - If you are seeing problems with sender verification, you can see exactly what the sender's mail server responds with when the address is checked.
Recipient callout - If you are seeing delivery problems, you can see exactly what the destination's mail server responds with when the recipient is specified.
96
Admin Level Control Panel n n n
Open relay check - You can see whether a mail server appears to be an "open relay", accepting mail for any destination.
Catch-all check - You can see whether a mail server appears to be a "catch-all" for a specified domain, accepting mail for any address at that domain.
Telnet test - You can check the full SMTP delivery process to a destination, to see exactly how the destination responds in answer to each of the SMTP commands, and the final message content.
You can access this page from the Admin and Domain Level Control Panels in
Other - Network
Tools
.
The following fields/options are available:
D
ESCRIPTION
F
IELD
/O
PTION
SMTP
Hostname
EHLO
Envelope Sender
Envelope Recipient
Data
You must either enter a server hostname here or enter the Envelope sender for any checks to run.
Name of the EHLO/HELO that you want to use in the SMTP transaction.
Enter the envelope sender to initiate a sender callout.
Enter the envelope recipient to initiate a recipient callout.
Using the Catch all option you can see whether a mail server appears to be a
'catch-all' for a specified domain, accepting mail for any address at that domain.
If you want to send data to the envelope-
97
Admin Level Control Panel
F
IELD
/O
PTION
D
ESCRIPTION recipient e.g. the content of the SMTP transaction and not just a callout.
Timeout, per SMTP command How long you want the SMTP commands to last (e.g. for slower mta's there may be a need to set this higher before it times out)
Interface Choose what IP you do the verification from. For example, if you want to do a sender verification check from a certain
IP, choose the IP address from those available. If it is the default , then it uses the interfaces server IP/hostname
(master.antispamcloud.com).
Prefer TLS
Data only for Exchange servers
Try to use STARTTLS to perform the test over a secure connection.
Some versions of Microsoft Exchange do not support doing a sender or recipient callout in the usual manner. If you select this option, then the tool will send a suitable test message in DATA, only if the server appears to be a Microsoft
Exchange Server. You should generally use this whenever doing a 'callout' check, but note that if the recipient is valid, they will receive the test email message.
98
Admin Level Control Panel
F
IELD
/O
PTION
Ping
Traceroute
D
ESCRIPTION
Note
- If
Data only for
Exchange servers
is unchecked,
Default message
is unchecked and there is nothing in the data part then no DATA is sent.
Test if hosts can be reached.
Display route and transmit time for connections between servers in the cluster and a specified destination.
Query DNS servers.
Dig
Configure Inbound Filtering for Microsoft Office
365
This topic describes how you can set up inbound filtering with Mail Assure and Office 365.
n n n
Step 1 - Add Your Domain to Mail Assure
Step 3 - Update your MX records to point to Mail Assure
Step 1 - Add Your Domain to Mail Assure
Add your domain to Mail Assure, setting your Office 365 mail server hostname as the inbound route. This can be found in the Office 365 admin centre. For more information about adding a domain, see
.
Step 2 - Configure a Rule in Office 365 to Allow Mail to be Delivered from
Mail Assure into Office 365
The rule can be X-header based or IP based.
99
Admin Level Control Panel
1.
In your Office 365 Dashboard, click on
Admin
and from the menu select
Exchange
.
2.
In the Exchange Admin Centre, select
Mail Flow
.
3.
Click the
+
under
Rules
and, from the menu, choose
Create a New Rule
.
4.
Click on
More Options
at the bottom of the page to see all available options.
100
Admin Level Control Panel
5.
In the
Name
field, add a descriptive name for your rule e.g.
Allow Mail Assure
.
6.
Create an X-header or IP based rule:
X-header rule:
a. From the Apply this rule if... dropdown, select A message header... - includes
any of these words.
101
Admin Level Control Panel b. Click on Enter text... .
c. In the specify header name dialog, enter "X-Recommended-Action" and click OK.
102
Admin Level Control Panel d. Next, click on Enter words... .
103
Admin Level Control Panel e. In the specify words or phrases dialog, enter "accept", click on + and click OK.
IP based rule:
a. From the Apply this rule if... dropdown, select The sender... - IP address is any
of these ranges or exactly matches.
104
Admin Level Control Panel b. Specify the inbound delivery IP addresses and/or ranges in the box provided.
105
Admin Level Control Panel c. Click OK.
3.
In the
Do the following...
dropdown, select
Modify the message properties
-
Set the spam confidence level (SCL)
.
106
Admin Level Control Panel
4.
In the
Specify SCL
dialog select
Bypass Filtering
and click
OK
.
107
Admin Level Control Panel
5.
Click
Save
to save the new rule.
Step 3 - Update your MX records to point to Mail Assure
Ensure that your MX Records are updated. See
Configure Outbound Filtering for Microsoft Office
365
This topic describes how you can set up outbound filtering with Mail Assure and Office 365.
In Mail Assure:
1.
In the Admin Level Control Panel, select
Domains - Overview
.
2.
Click on the relevant domain.
3.
The Control Panel for that domain is displayed.
4.
Click on
Outgoing - Manage Users
.
5.
In the
Add a user
section at the bottom of the page, click on the
Authenticating Domain
tab:
108
Admin Level Control Panel
6.
Enter a password for your domain.
7.
Click
Add
. At the top of the page you should see a notification that the outgoing user was successfully added.
8.
Click
Edit
in the context menu alongside the domain name.
109
Admin Level Control Panel
9.
In the
Outgoing user settings
page, place a tick in the
Re-authentication permitted
checkbox.
10.
Click
Save
.
In Office 365 Exchange Admin Center
110
Admin Level Control Panel
There is no facility to change the port used by send connectors in Exchange Online (Office 365) from 25 to 587. This means that messages sent via *.mtaroutes.com will be rejected with a 550
Relaying Denied response. To use outbound filtering with Office 365, you need to configure the send connector to use port25.smtp.antispamcloud.com:
1.
Log in to the Office 365 Exchange Admin Center.
2.
Go to
Admin - Exchange menu - Mail Flow - Connectors
.
3.
Create a new send connector from
Office 365
to
Partner Organization
and give it a name.
4.
Select
Only when email messages are sent to these domains
, click
+
to add domains and enter
*
.
5.
Click
OK
.
6.
Select
Route email through these smart hosts
and add
port25.smtp.antispamcloud.com
as the smart host.
111
Admin Level Control Panel
7.
Check
Always use Transport Layer Security (TLS) to secure the connection
(recommended)
and select
Issued by a trusted certificate authority (CA)
.
8.
Validate the connector and
Save
.
112
Admin Level Control Panel
Configure Exchange Online/Office 365 for Mail
Assure SMTP Journaling
n n n n n n
Step 1 - Make sure Archiving is enabled for the domain - see
.
Step 2 - Configure the domain with the journaling address
s.
Step 3 - Set up a new Connector in Office 365
Step 4 - Configure the SMTP journaling address as a 'Mail Contact' address
Step 5 - In Mail Assure Create the Outbound User for the Domain
.
Step 6 - Create an Exchange rule in the Exchange Admin Centre to BCC all Mail to be
Archived to the Journaling Address.
Step 2 - Configure the domain with the journaling address
in the Domain Level Control Panel for your domain, click on
Archive - Archived Recipients
.
Select
Enable journaling
and add the journaling address.
Make sure the address is @ the domain you are configuring the journaling for.
113
Admin Level Control Panel
Step 3 - Set up a new Connector in Office 365
1.
In the Exchange Admin Center, select
Mail Flow - Connectors - New
.
2.
In the
From
dropdown select
Office 365
and in the
To
dropdown, select
Partner organization
:
114
Admin Level Control Panel
3.
Click
Next
.
4.
In the
New connector
page set the domain to use this connector (as the primary domain where the journal recipient was created in Step 2).
115
Admin Level Control Panel
5.
Click
Next.
6.
Route mail for this connector through the port25, outbound SMTP server by selecting
Route email through these smart hosts
and adding
port25.smtp.antispamcloud.com
.
7.
Click
Next
. Review the configuration and save the changes.
Step 4 - Configure the SMTP journaling address as a 'Mail Contact' address
1.
In the Exchange Admin Center, click on the
Contacts
tab and
+
to create a new contact.
2.
In the
External email address
field enter the journaling address and click on
Save
:
116
Admin Level Control Panel
Step 5 - In Mail Assure Create the Outbound User for the Domain
1.
In the Domain Level Control Panel, select
Outgoing - Manage users
.
2.
Click on the
Authenticating Domain
tab.
3.
Enter the Domain name and Password and click
Add and configure
.
Note - The password must be set here but is not needed to relay mail through this user.
117
Admin Level Control Panel
4.
In the
Outgoing user settings
page, to assign message to this user (domain) by the SMTP
FROM address, select
Envelope Sender
from the
Authentication Method
dropdown.
Note
- This may not work correctly for out-of-office messages, or NDR messages. In this situation, select
Header
as the
Identification method
so the From header value may be used to capture these messages, using the messages sender address.
5.
Make sure the
Re-authentication permitted
option is selected.
118
Admin Level Control Panel
119
Admin Level Control Panel
6.
Click
Save
.
Step 6 - Create an Exchange rule in the Exchange Admin Centre to BCC all Mail to be Archived to the Journaling Address.
1.
In the Exchange Admin Centre, select
Mail Flow - rules
.
2.
Click on
+
and select
Create a new rule...
.
3.
Give the rule a name e.g.
Mail Assure Journal
.
4.
You can choose to apply this rule to all messages or specific messages:
Apply Rule to All Messages
(Internal and External)
From the
Apply this rule if...
dropdown, select
[Apply to all messages]
.
Important
- This should
NOT
be used if Mail Filtering is also being used, as messages will be sent to the archive twice.
120
Admin Level Control Panel
Apply Rule to Internal Messages Only
From the and
Apply this rule if...
dropdown, select two conditions -
The sender is located
The recipient is located...
.
121
Admin Level Control Panel
5.
From the
Do the following...
dropdown, select
Bcc the message to...
and from the dialog select the journaling address from the list.
All messages within the scope of this rule will now be archived in the hosted mail archive.
122
Domain Level Control Panel
Domain Level Control Panel
The Domain Level Control Panel can be accessed by the domain user and by Admin and Sub-
Admin users (if given permission).
Accessing the Domain Level Control Panel
You can access the Domain Level Control Panel in two ways: n n
Directly, by logging in with your Domain user login credentials.
Via the Admin Control Panel, by logging in as an Admin or Sub-Admin and selecting the domain from the
Domains - Overview
page.
123
Domain Level Control Panel
The Domain Level Control Panel is displayed:
124
Domain Level Control Panel
125
Domain Level Control Panel
Incoming Filtering - Domain Level
From the Domain Level Incoming Filtering area you can carry out a variety of tasks related to the filtering of your incoming mail.
n n n
- Filter on incoming mail and report on the data available.
- View inbound mail that has been blocked and quarantined and take action where necessary.
- View your incoming messages that have been temporarily rejected before reaching the destination server and placed in the Incoming Delivery Queue. You can reply to emails in the queue if required.
n n n n
- Manage your domain's mailbox recipients and make sure your domain's valid recipient list is up-to-date.
- Set up and manage your domain aliases.
- Set up and manage any email address aliases.
- Configure various settings including: the primary contact email address; email notification From address; logging for invalid recipients and Rejected local part characters.
n n n n n n n
- Add and check your destination mailserver route(s)
View Domain Statistics (Incoming)
- Check domain statistics including spam ratio, spam messages blocked, viruses blocked, whitelistings/blacklistings etc.
- Upload messages that should be treated as spam by the system.
- Upload messages that should be treated as NOT spam by the system.
Clear Callout Cache - Incoming
- Clear the domain's incoming callout cache.
Incoming Whitelist Filtering Rules - Domain Level
- Set up Whitelist filtering rules for your domain.
Incoming Blacklist Filtering Rules - Domain Level
- Set up Blacklist filtering rules for your domain.
126
Domain Level Control Panel
View Incoming Log Search
A comprehensive search allowing you to filter on all received, blocked and temporarily rejected incoming messages over the past 30 days. This is available from the Domain level and Email level Control Panels, from
Incoming - Log Search
.
Tip - The Log Search will soon be replaced by a more powerful version which is available in Preview mode. You can see all features that are in Preview mode by enabling Features
Preview in your User profile. For more information on the Log Search preview, see
127
Domain Level Control Panel
128
Domain Level Control Panel
The following filters are provided:
F
ILTER
/
BUTTON
Search
Date range
Filtering server
Message ID
Subject
Sender
Recipient
Sender IP
Sender hostname
Original message ID
Delivery after
Delivery before
Delivery data
D
ESCRIPTION
There are two search options here: n n
Within range - connections that are still being processed by the filter will not be included here.
Latest results - results will continually be refreshed to include new connections and exclude ones that have been processed.
The date range
Choose from the list available
Message ID
Message subject
Message sender
Message recipient
IP address of sender
Hostname of sender
Original message ID
Select date - messages delivered after this date will be included in the results (does not apply to Email Scout
Reports)
Select date - messages delivered before this date will be included in the results (does not apply to Email Scout
Reports)
Text entered here searches the delivery data (the reply
129
Domain Level Control Panel
F
ILTER
/
BUTTON
Destination
Destination host
Destination port
Classification
Status
D
ESCRIPTION the filtering servers receive after relaying the message to the destination mail server).
Destination IP address
Destination hostname
Destination port
Choose from All, Accepted or Rejected messages.
Further inline filters available: not spam, oversize, phish, unknown, whitelisted, blacklisted, virus, unsure, greylisted, spam, false positive, false negative, deferred.
n
All - selects all statuses listed n
None - Deselects all statuses listed
You can also choose each status you want to include individually from the following: n
Queued n
Manually removed from delivery queue n
Queued (frozen) n
Connection did not complete n
Quarantined n
Expired from Quarantine n
Manually removed from Quarantine n
Released from quarantine n
Rejected without quarantine n
Automatically removed from delivery queue, sender notified n
Delivered
130
Domain Level Control Panel
F
ILTER
Match
Reset
Export
/
BUTTON
Return partial matches
Return only archived messages
Columns to be displayed
Customise
Start search
Email Scout Reports
D
ESCRIPTION n
Queued (delivery has failed) n
Accepted and discarded n
Automatically released via whitelist n n
Any condition - If you have selected more than one status (above) the results will match at least one of these.
All conditions - The search results will match all statuses selected in the Status filter (above).
Will return partial matches for the data entered in the filters. For example if you search for [email protected] the search will also return [email protected].
Note
- By default this is off. Turn on to apply to your search.
Restricts the results to only archived messages.
Lists the columns displayed in the search results.
Choose which columns you want to be displayed in the search results.
Starts the search using the filters selected and displays the results at the bottom of the page.
Opens the Email Scout Reports page that lists all saved scheduled reports. See
.
Displayed once you have run a search. Removes the search results and resets the filters back to the defaults.
Displayed once you have run a search. Downloads a zip
131
Domain Level Control Panel
F
ILTER
/
BUTTON
Email me this report
D
ESCRIPTION of the report in Excel CSV file format.
Displayed once you have run a search and opens the
Email report dialog where you can choose to email a report of the log search results immediately, on a chosen date or as a scheduled
(hourly, daily, weekly or monthly). See
.
Once you have specified your filters, click on
Start search
to run the search and display the results at the bottom of the page.
In the Search Results listed you can carry out various actions: n n n n
Accepted Messages - You can: View error details; Re-deliver; Download
Rejected Messages (Quarantined) - You can: View the message; Release the message (and deliver), Release and train the message; Remove the message from the Quarantine
Queued Messages - You can remove from queue with or without notification to sender
Archived Messages - You can re-deliver or download
Also, once you've run your search you can go on to: n
Create and Email Log Search Report
immediately or set up a scheduled report which will be sent to a recipient periodically, on a specified date and time, using the saved filters.
n
Download the report in Excel CSV format - using the
Export
button.
Tip
- The
provides the same functionality described in this topic for outgoing messages.
Create and Email Log Search Report
Once you have run your incoming or outgoing log search, you can choose to Email the details to a recipient
132
Domain Level Control Panel
1.
In the
Domain Control Panel
, click on
Incoming - Log Search
or
Outgoing - Log search
.
2.
Using the filters specified, choose what log search data you want to display in the results.
3.
Click on
Start Search
to display the results.
4.
Click on
Email me this report
.
The
Email report
dialog is displayed:
133
Domain Level Control Panel
5.
From the
Delivery
dropdown, choose from the following options whether you want to create and send the report immediately or on a given date and time - or create a scheduled report: n
Right away - Send the report to the specified recipient immediately.
n
At given date - Send the report on the specified date and time to the specified recipient.
n
Repeat - Using this option you are creating an Email Scout Report, a scheduled report which can be run and sent hourly, daily, weekly or monthly to the specified recipient. Reports with this delivery method will be listed in the Email Scout
Reports page - see
.
6.
If you chose
Right away
from the
Delivery
dropdown, enter the report recipient, subject of the report, the Sender and the report format (row based or column based).
134
Domain Level Control Panel
7.
If you chose
At given date
, select the Date and Time as well as the Recipient, Subject,
Sender and report format.
8.
If you chose
Repeat
, enter the report name and frequency (hourly, daily, weekly or monthly), time, recipient, subject, sender and format. This report will be saved and listed in the
Email Scout Reports
page see
.
135
Domain Level Control Panel
9.
Enter the report recipient's email address in the
Recipient
field.
10.
Enter the report subject in the
Subject
field.
11.
Enter the name you wish to see as the sender in the
Sender
field.
12.
Click on
Save
.
The newly created report will be emailed to the recipient on the date and time specified.
Email content
The email contains a list of emails that match the report filters.
136
Domain Level Control Panel
The subject line may contain a link. When clicked this will open a web page in your browser containing the message content.
In this page you can: n n
View the message as Plain text or Raw (which displays the message headers)
Use the
Available Actions
dropdown to perform the following: n n n n n n
Blacklist Sender
Release
Whitelist Sender
Remove
Release and Train unsubscribe
137
Domain Level Control Panel
View Email Scout Reports
This page lists all scheduled reports created when selecting the
Email me this report
button in the Incoming Log Search - to create an Email Scout Report, see
.
1.
In the
Domain Level Control Panel
, click on
Incoming - Log Search
:
2.
At the bottom of the page click on
Email Scout Reports
.
138
Domain Level Control Panel
The
Email Scout Reports <domain name>
page is displayed:
In this page you can: n n
Remove reports
Run a log search based on the search filters specified for a report
View Spam Quarantine - Domain Level
The incoming Spam quarantine holds incoming messages that the filtering system have blocked. You can access it from the Domain Level and Email Level Control Panels (see
Spam Quarantine - Email Level ).
Tip
- You set up how the system deals with spam in the
Incoming - Filter Settings
page.
See
Manage Quarantine Filter Settings
Before you can view the Quarantine you must first enable it from the Domain Level Control
Panel in
Incoming - Filter Settings
:
139
Domain Level Control Panel
To View the Domain Level Incoming Spam Quarantine:
Select
Incoming - Spam Quarantine
:
The
Spam quarantine
page is displayed:
140
Domain Level Control Panel
In this page you can: n n n n n n n n
Search for a quarantined message - Using the
Search
fields at the top of the page.
Preview quarantined message content - By clicking on the message link in the
Subject
column. See
View Quarantined Message Content .
Empty spam quarantine - Click on the
Empty spam quarantine
button at the top right of the page.
Release quarantined messages - Allow messages to be delivered to the recipient. See
.
Release and train messages - Allow messages to be delivered and train the system to recognize future messages from this sender as not spam. See
.
Release and whitelist messages - Allow messages to be delivered and whitelist the sender. See
Release and Whitelist Quarantined Messages
.
Remove messages - See
Remove Messages from Quarantine
Remove and Blacklist Messages - Remove the message and blacklist the sender. See
Remove and Blacklist Quarantined Messages .
Important
- You can view outgoing messages held in the outbound Quarantine via the
. From here you can choose to release or release and train messages.
141
Domain Level Control Panel
View Quarantined Message Content
1.
Select
Incoming - Spam quarantine
.
2.
Locate the message you want to view - you can use the search facility to help you do this quickly.
3.
Click on the link in the
Subject
column of the message.
The
Mail preview
page is displayed.
The
Normal
tab shows the message details and content in either Plain or HTML format.
The
Raw
tab, shows the raw message data.
4.
To quickly see the reason why the message has been quarantined, open the
Raw
tab and look for the
X-MailAssure-Class
and
X-MailAssure-Evidence
lines. In the example below, the message has been rejected because it has been classified as phishing by the DMARC check:
142
Domain Level Control Panel
In this page you can also perform the following actions on the message:
143
Domain Level Control Panel n n
Delete
Release - Release from quarantine and deliver the message.
Important
- Releasing a message from quarantine may also result in it being reported as a classification mistake to correct our systems - this is dependent on the classification type. For example, a rejected phishing attempt, when released will report a classification mistake and correct the system. Conversely, releasing a message that has been quarantined because the date header is more than 7 days in the past or in the future will only deliver the message to the recipient. For more information on the classifications used to describe why a message was rejected or temporarily rejected, see
n n n
Release and train - Deliver the message and train the system to recognize the message as not spam (report the message as a false positive).
Load raw body
Download as .eml
Release Quarantined Messages
1.
Select
Incoming - Spam quarantine
.
2.
Click on the dropdown to the left of the message and select
Release
.
3.
If you want to release multiple messages, place a tick in the box to the left of each message and, from the
--select action--
dropdown at the bottom of the page, select
Release
and click
Apply.
The message(s) will be released from the quarantine and delivered to the intended recipient(s).
Important
- Releasing a message from quarantine may also result in it being reported as a classification mistake to correct our systems - this is dependent on the classification type. For example, a rejected phishing attempt, when released will report a classification mistake and correct the system. Conversely, releasing a message that has been quarantined because the date header is more than 7 days in the past or in the future will only deliver the message to the recipient. For more information on the classifications used to describe why a message was rejected or temporarily rejected, see
144
Domain Level Control Panel
Tip
- You can also Release or Release and train messages from the Mail preview page.
See
View Quarantined Message Content
.
See also: n n n
Release and Train Quarantined Messages
Release and Whitelist Quarantined Messages
Incoming Rejection Classifications
Release and Train Quarantined Messages
Allow messages to be delivered and train the system to recognize future messages from this sender as not spam (report the message as a false positive). You can do this from the Domain and Email Level Control Panels.
You can Release and Train a single message by using the dropdown to the left of the message and selecting
Release and Train
.
To Release and Train multiple messages, place a tick in the box to the left of all messages that apply, and from the dropdown at the bottom of the page select
Release and Train
- then click
Apply
.
145
Domain Level Control Panel
Important
- Releasing a message from quarantine may also result in it being reported as a classification mistake to correct our systems - this is dependent on the classification type. For example, a rejected phishing attempt, when released will report a classification mistake and correct the system. Conversely, releasing a message that has been quarantined because the date header is more than 7 days in the past or in the future will only deliver the message to the recipient. For more information on the classifications used to describe why a message was rejected or temporarily rejected, see
Tip
- You can also Release or Release and train messages from the Mail preview page.
See
View Quarantined Message Content
.
Release and Whitelist Quarantined Messages
This facility is only available at Domain Level.
1.
Select
Incoming - Spam quarantine
.
2.
From the dropdown alongside the message, select
Release and whitelist
.
3.
To release and whitelist multiple messages at once, place a tick in the box alongside each message, and from the
--select action--
dropdown at the bottom of the page, select
Release and whitelist
.
146
Domain Level Control Panel
4.
All selected messages will be delivered to the intended recipient(s) and the sender will be whitelisted so that future messages from this sender will bypass filtering and be delivered automatically.
Important
- Releasing a message from quarantine may also result in it being reported as a classification mistake to correct our systems - this is dependent on the classification type. For example, a rejected phishing attempt, when released will report a classification mistake and correct the system. Conversely, releasing a message that has been quarantined because the date header is more than 7 days in the past or in the future will only deliver the message to the recipient. For more information on the classifications used to describe why a message was rejected or temporarily rejected, see
Remove Messages from Quarantine
1.
Select
Incoming - Spam quarantine
.
2.
To remove a single message, select
Remove
from the dropdown to the left of the message.
3.
To remove multiple messages, place a tick in the box alongside each message you want to remove and select,
Remove
from the
--select action--
dropdown at the bottom of the page - and click
Apply
.
The message(s) will be removed from the system completely.
Remove and Blacklist Quarantined Messages
This facility is only available from the Domain Level Spam Quarantine.
1.
From the Domain Level Control Panel, select
Incoming - Spam quarantine
. The
Spam quarantine
page is displayed, showing all quarantined messages for this domain.
2.
Click on the dropdown to the left of the message and select
Remove and blacklist
.
3.
To remove and blacklist multiple messages, place a tick in the box alongside each message and, from the
--select action--
dropdown at the bottom of the page, select
147
Domain Level Control Panel
Remove and blacklist
.
The message(s) will be removed from the system completely and the sender will be blacklisted so that future messages from this sender will be rejected.
Manage Quarantine Filter Settings
In this page you can enable/disable your quarantine and manage your quarantine filter settings for incoming emails.
Important
- If you choose to disable your quarantine, all emails detected as Spam will be delivered to your email server unfiltered.
In the Domain Level Control Panel, select
Incoming - Filter settings
:
148
Domain Level Control Panel
The Filter settings page for your domain is displayed:
149
Domain Level Control Panel
The following settings are available:
S
ETTING
Manage list of domains and IP addresses with disabled SPF,
DKIM, and DMARC checks
D
ESCRIPTION
This link opens a page which allows you to disable SPF, DKIM and
DMARC checks for specific
150
Domain Level Control Panel
S
ETTING
Quarantine enabled
Quarantine threshold
Beneficial to train threshold
Sender checks
D
ESCRIPTION domains, IPs or subnets - so that if, for example, an SPF check fails for any of the specified domains or sender IPs, the system will continue to process the message.
Enables/disables the quarantine.
Important
- If you choose to disable your quarantine, all emails detected as Spam will be delivered to your email server unfiltered.
Every message that has a combined score above this setting will be classed as spam and will be quarantined.
Every message which breaches this combined scoring threshold will be considered unsure. Messages with a score below this threshold will be delivered.
SPF (Sender Policy Framework)
-
This is a common check that allows the sender to indicate which IPs are allowed to deliver email for the sender domain. We advise keeping this enabled to block Spam.
151
Domain Level Control Panel
S
ETTING
Skip maximum line length check
D
ESCRIPTION
DKIM (DomainKeys Identified
Mail)
- Lets an organization take responsibility for a message that is in transit. The organization is a handler of the messages, either as its originator or as an intermediary.
Their reputation is the basis for evaluating whether to trust the message for further handling, such as delivery.
DMARC (Domain-based Message
Authentication, Reporting &
Conformance)
- An email authentication protocol that builds on SPF and DKIM by adding a reporting function that allows senders and receivers to improve and monitor protection of the domain from fraudulent email.
There are strict regulations on allowed line length in emails which are automatically enforced by the email software. Some applications or badly developed scripts do not adhere to the official specifications thereby exceeding the maximum allowed line length. This check can be disabled by ticking this box but we advise keeping it enabled to block Spam.
152
Domain Level Control Panel
S
ETTING
Beneficial to train notation
Quarantine response
D
ESCRIPTION
Text added here is prepended to the subject line of all messages classed as unsure.
When an inbound message is detected as spam and quarantined, the response you send to the recipient can be Rejected or
Accepted. The default for incoming mail is 'Accepted'.
Manage Domains and IPs with Disabled SPF, DKIM and DMARC Checks
The
Manage list of domains and IP addresses with disabled SPF, DKIM, and DMARC checks
page allows you to disable SPF, DKIM and DMARC checks for specific domains, IPs or subnets - so that if, for example, an SPF check fails for any of the specified domains or sender
IPs, the system will continue to process the message.
In the Domain Level Control Panel, select
Incoming - Filter settings
and click on the
Manage list of domains and IP addresses with disabled SPF, DKIM, and DMARC checks
link at the top of the page.
The following page is opened allowing you to add domains according to check type:
153
Domain Level Control Panel
Message Queueing
Generally emails are delivered directly to the destination server. However, if the delivery attempt to the destination server returns a temporary failure, all email messages sent to known, valid recipients are queued locally on the filtering servers for delivery retry.
154
Domain Level Control Panel
Emails which have been permanently rejected by the destination server with a 5xx error code, will NOT be queued and are rejected by the system. If the destination mail server acts as a catch-all for the domain, no recipients will be cached and therefore email will only be queued if the valid recipients have been explicitly set as Local Recipients in
Incoming - Local recipients
(accessible from the Domain Level Control Panel). If a recipient is not cached as valid, the message will be temporarily rejected and queued with the sender instead of on the filtering server (unless
Use local recipients
is enabled in the Local Recipients page). For more information about Local Recipients, see
.
Automatic Retry Schedule
Messages queued for known valid recipients because of temporary problems with the destination route (e.g network problems) are automatically retried for delivery at the following approximate intervals: n n n n
During the first 2 hours, delivery is retried at a fixed interval of 15 minutes.
During the next 14 hours, delivery is retried at a variable interval, starting at 15 minutes and multiplying by 1.5 with each attempt (e.g. after 15 minutes, then 22.5 minutes, then
34 minutes, and so on).
From 16 hours since the initial failure, until 4 days have passed, delivery is retried at a fixed interval of every 6 hours.
After 4 days we generate a bounce to the sender. If the bounce cannot be delivered immediately (i.e. if the 'message could not be delivered' message (Non-Delivery Report) fails to send), it will be frozen automatically. After this time, delivery of the message will have permanently failed. Optionally, via the Software API, the 4 days can be overruled to a longer (or shorter) period.
When a message is frozen (it cannot be delivered to the recipient or returned to the sender), no more automatic delivery attempts are made. An Admin user can “thaw” ( force retry) such messages when the problem has been corrected.
Mail Assure caches valid recipients up to 4 days. After this time, Mail Assure will not queue email for those recipients and instead temporarily rejects the message so it is queued on the sending server. The sending server in this case will automatically retry delivery. When using the
'Local Recipients' feature (described above), no caching is involved and Mail Assure continues to accept and queue the emails for all specified recipients.
155
Domain Level Control Panel
See also: n n
Reply to Email in the Delivery Queue
Manage Local Recipients
A domain's Local Recipients are all the valid recipient email addresses that will send and receive mail that will be filtered by Mail Assure.
For Mail Assure's business continuity feature to work (i.e. you will still be able to send and receive mail when your mail server is down), you need to make sure that your local recipients list is up-to-date (ldap sync, sync with MSP Mail, or CSV upload/manual entry) and
Use local recipients
is enabled.
If you don't do this, the lookup that checks if the recipient exists fails, and the system will temporarily reject the message. The message will not be queued and will be sent back to the sender's server with a temporary failure status.
To access the Local Recipients page:
In the Domain Level Control Panel, select
Incoming - Local Recipients
.
156
Domain Level Control Panel
157
Domain Level Control Panel
Upload Local Recipients
To upload all your local recipients you can use the
Upload CSV
link at the top of the page which allows you to upload multiple recipients - or you can add them manually, one-by-one using the
Add local recipient
facility.
Enable Local Recipients
Enable this option to ensure all your local recipients can continue to send and receive mail when the mail server is down.
In the
Options
section place a tick in the
Use local recipients
box.
Manage Domain Aliases
If you have multiple domains you can make use of the domain aliasing option. Any email sent to the domain alias will be delivered to the same user on the main domain.
In the
Domain aliases
page you can add and delete aliases for this domain. When you add a domain alias and switch the MX records to activate the filtering for this alias domain, mail directed to [email protected] will be filtered and delivered to [email protected].
158
Domain Level Control Panel
To add a domain alias:
1.
In the Domain Level Control Panel, go to
Incoming - Domain aliases
.
The
Domain aliases
page is displayed.
2.
To search for a specific alias, use the
Query Rules
panel to set up your search filters.
3.
Click on
Show Results
to show all matching aliases.
4.
Using the dropdown to the left of each alias, you can choose to edit or remove the alias.
5.
To add an alias, click on
Add domain alias
to open the
Add a New Domain Alias
dialog
6.
Enter the domain alias in the
Alias
field and click on
Add
.
159
Domain Level Control Panel
Note
- Domain aliases do not have separate access to the Domain Level Control Panel.
Since all SMTP traffic to the domain alias is rewritten to the main domain, any changes/lookups on the main domain will simply include the alias domain traffic as if it was sent directly to the main domain. If you are searching for a specific email sent to a domain alias using the Log Search, the recipient will therefore show as user-
@maindomain.
Manage Email Address Aliases
Email address aliases primarily exist in the interface to consolidate multiple email addresses so their spam can be managed by one person. For example, email sent to [email protected]
will be filtered and delivered to [email protected].
160
Domain Level Control Panel
Adding an Email Alias
1.
In the Domain Level Control Panel, go to
Incoming - Email Address Aliases
.
2.
In the
Add an email address alias
panel, enter the email address you want to create an alias for in the Email address field.
3.
In the
Email address alias
field enter the alias you want to use.
161
Domain Level Control Panel
Tip
- If you want to catch all mail at this domain and direct it to a single address, when adding an alias, use '
*
' in the
Email address alias
field and the address you want it rewritten as in the top '
Email address
' field. Note that you cannot use wildcards in the email address alias, other than a single '
*
'. For example, the alias address '
user*
' means the alias address '
user*@domain.ext
', NOT all addresses that start with '
user
'.
Configure Domain Settings
In the Domain Level Control Panel, select
Incoming - Domain settings
.
The
Domain settings
page is displayed:
162
Domain Level Control Panel
The following settings are displayed: n n n n
Primary Contact Email for that domain
Email notifications From address
Enable logging of invalid recipients
Direct delivery for email and domain aliases - When selected, this means that when aliasing is in use, emails will be delivered to the alias address, instead of the original one.
This applies to both email and domain aliasing.
Note
- The Log Search will still show the message for the original address.
n n
Rejected Local Part Characters
- When the system detects any of these characters in the local part of a recipient's email address in an incoming email, the email will be rejected.
Timezone
163
Domain Level Control Panel
Rejected Local Part Characters
The
Rejected local-part characters
page allows you to list the characters that will not be accepted in the local part of an email address (the text before the @ symbol e.g.
<localpart>@domain.xyz). If any of the listed characters is detected, the message will be rejected and not quarantined.
In this page you can also test the settings you have configured:
Manage Destination Routes
The Edit route(s) page displays destination mail server route(s).
From here you can: n n
Add a Route
Check Routes for Open Relays
164
Domain Level Control Panel n
Carry out a Telnet test for a route
To access this page, go to
Incoming - Edit route(s)
in the Domain Level Control Panel:
View Domain Statistics (Incoming)
This page displays incoming statistics of your domain's email traffic over a specified time-frame.
In the Domain Level Control Panel, go to
Incoming - Domain statistics
:
165
Domain Level Control Panel
Statistics displayed include: Spam ratio of spam emails to all filtered emails and the following metrics: Not Spam messages; Unsure messages; Spam messages blocked; Viruses blocked;
Whitelisted and Blacklisted etc.
166
Domain Level Control Panel
167
Domain Level Control Panel
You can also view the same domain statistics for outgoing traffic - from
Outgoing - Domain statistics
, see
View Domain Statistics (Outgoing) .
Train Spam
Use the
Train spam
page to upload messages that should be treated as spam by the system.
1.
In the Domain Level or Email Level Control Panel, select
Incoming - Train spam
.
2.
In the
Train spam
page, drag and drop or browse for and upload messages you want the system to treat as spam. Messages can be in .eml or .msg format.
Important
- The emails should be in .eml or .msg format and must contain the full headers.
Train Not Spam
Use the
Train not spam
page to train the filter to recognize specific messages as
NOT
spam.
1.
In the Domain Level Control Panel, select
Incoming - Train not spam
.
2.
In the
Train spam
page, drag and drop or browse for and upload messages you want the
168
Domain Level Control Panel system to treat as NOT spam in the future.
Important
- The emails should be in .eml or .msg format and it must contain the full headers.
Clear Callout Cache - Incoming
In the
Clear callout cache
page you can manually clear the domain’s incoming callout cache and the outgoing callout cache. This tool is especially useful after changing the domain routes,
DNS records and for removing the good/bad responses from the destination mail server.
1.
In the Domain Level Control Panel, select
Incoming - Clear callout cache
.
2.
To clear the callout cache for the domain, click on
Clear
.
Incoming Whitelist Filtering Rules - Domain Level
In the Incoming Whitelist Filtering Rules page at the Domain Level, you can view all whitelist filtering rules that have been set up for your domain and you can also add new ones. Incoming mail that matches any of the rules will always be delivered.
The rules are based on Python's regular expression (regex) syntax. (For more information on regular expressions, see regex101.com
).
169
Domain Level Control Panel n n
View Incoming Whitelist Filtering Rules
Add an Incoming Whitelist Filtering Rule
Incoming Blacklist Filtering Rules - Domain Level
In the Incoming Blacklist Filtering Rules page you can view all blacklist filtering rules that have been set up for your domain's incoming mail and you can also add new ones. Incoming mail that matches any of the rules will always be blocked.
The rules are based on Python's regular expression (regex) syntax. (For more information on regular expressions, see regex101.com
).
n n
View Incoming Blacklist Filtering Rules
Add an Incoming Blacklist Filtering Rule
Note
- You can also access this page at the Admin Level for all of your managed domains.
Incoming Rejection Classifications
In Mail Assure we use different classifications to describe why a message was rejected or temporarily rejected.
T
EMPORARILY
R
EJECTED
(4
XX
SMTP
RESPONSE
)
Messages which have been temporarily rejected, stay stored on the sending mail server. Legitimate mail servers always automatically retry delivery of such messages. Depending on the reason of the temporary reject, the message could get accepted at a subsequent delivery attempt.
It's always possible to whitelist the sender to disable any checks and to ensure that the message will get accepted as soon as it's retried by the sending server.
Greylisted
170
Domain Level Control Panel
T
EMPORARILY
R
EJECTED
(4
XX
SMTP
RESPONSE
)
Temporary rejection due to greylisting. This technology is only applied to new IP addresses which do not have a (good) reputation yet in our global systems. We do not apply "classical greylisting" so this should not cause any delays on your legitimate traffic. For new Local Cloud installations please allow up to 72 hours for the systems to "learn" about your traffic.
You have been denied authentication
This means that you have used incorrect outgoing authentication details too often in a short period of time. To resolve this, use the correct authentication details and wait a few moments and try again. This is to protect against brute-force attacks on your SMTP credentials.
Unable to verify destination address
This means the destination server is unreachable or temporarily rejecting the email traffic. You'll have to check the destination route set to ensure delivery is attempted to the correct server. The logs on the destination server should show why it is not accepting the delivery attempts.
Unable to verify sender address
This means the system was unable to verify the sender using a sender callout. You'll have to check the sender mail-server to verify why such callouts count not be done. When the sender verification option is used in the outgoing user settings, then each specific sender address must be verifiable like this.
Internal error
An internal error occurred, this should automatically resolve. If not, please contact support.
Per-minute connection limit exceeded
The sender has exceeded his/her per-minute limit.
171
Domain Level Control Panel
T
EMPORARILY
R
EJECTED
(4
XX
SMTP
RESPONSE
)
Too Many Connections
Too many connections from the sending server. Ratelimited.
Too Many Concurrent SMTP Connections
There is a hard-coded limit of 10 concurrent SMTP connections per IP to protect the systems against attack. Please ensure that the sending mail server only opens up a maximum of 10 concurrent connections to avoid hitting this limit.
Too many messages. Please wait for a while and try again.
This indicates that the outgoing user has exceeded the maximum amount of messages configured for that outgoing user to be sent. In case the limits should be changed, they can be modified via Mail Assure for the outgoing user. These limits can be entirely disabled there as well.
Mail for this domain cannot be accepted right now; please retry
(Unable to handle in active connection.)
Within a single SMTP connection, it is possible to deliver a message to different recipients. The SMTP protocol only allows you to either "accept"
OR "reject" the email, without distinguishing between the different recipients. In case one of the recipients has different filtering settings, we cannot "accept" or "reject" the message as the classification may differ per-recipient. In such case we return a temporary rejection, so the sending server will retry delivery individually for the recipients allowing to classify each message separately.
Most SMTP servers retry immediately, and hence there will be no delivery delay. If all recipients are sharing the same filtering settings, the message will be immediately accepted for all recipients (or rejected) without this temporary reject. In case a delay is experienced, the sender can instead configure their server to either immediately retry (to prevent such delay), or to open a separate delivery connection for each recipient.
172
Domain Level Control Panel
173
Domain Level Control Panel
R
EJECTED
(5
XX
SMTP
RESPONSE
)
Messages which have been rejected are blocked by the system. Generally these messages can be reviewed in the "Spam quarantine", from where they can be released. It's always possible to whitelist the sender to disable any checks and to ensure that the message will get accepted as soon as it's retried by the sender.
Lines in message were longer than user maximum
This means that line within the email is longer than the set maximum. The RFC 5322 (SMTP
5321) specifies a maximum line length of 998. Normal email clients always enforce this limit to avoid delivery problems. The problem should be resolved at the sender side, or the check can be disabled.
Message had more parts than the user maximum (Too many MIME parts)
This refers to the amount of MIME parts that a message contains. The default limit is set to 100.
This can be de-passed and triggered with excessive amounts of attachments or other MIME parts.
Sending server used an invalid greeting
The sender has used an invalid HELO/EHLO. This could be either because an IP address is used for the HELO, or because the HELO contains an invalid character, for example : underscore (_).
The RFC states that a FDQN (Fully Qualified Domain Name) MUST be used.
Considered spam
Our systems considered this message as SPAM and quarantined the message. Releasing the message from quarantine will report it as a classification mistake to correct our systems.
SPF failure
This means that the SPF (Sender Policy Framework) has been broken. If this is legitimate mail, then this could be due to a forwarding construction. Please see our SPF knowledgebase article for more information. Please note, releasing and training large amounts failed SPF messages, can result in the sending domain being skipped from further SPF checks.
Pyzor
Pyzor is a content related classifier based on collected/reported data from our datasets.
Releasing the message from quarantine will report it as a classification mistake to correct our systems directly.
Sending server is missing DNS records
The sending server is missing MX records or A records. Please note that any DNS changes only take effect after the initially set TTL has expired.
Destination address does not exist
The destination server is rejecting the connection with a 5xx permanent failure. The logs on the destination server will show why the message was rejected. You'll have to resolve the problem on the destination server to ensure it accepts the email.
Recipient address rejected by destination
174
Domain Level Control Panel
R
EJECTED
(5
XX
SMTP
RESPONSE
)
The destination server is rejecting the recipient callout with a 5xx permanent failure. The logs on the destination server will show why the message was rejected. You'll have to resolve the problem on the destination server to ensure that recipient callouts can be used More details can be seen here.
Phishing attempt detected
Our systems detected a phishing attempt. Releasing the message from quarantine will report it as a classification mistake to correct our systems.
Date header far in the past or future
This classification means that the date header of the email is more than the default 7 days in the past or future. Releasing this will only deliver the message to the recipient. This is something the sender will need to resolve.
Bad header count (Message incorrectly formed)
Emails should never contain duplicate headers such as "Subject" or "To". In case such duplicate headers are found, the message will be rejected until the underlying bug is fixed in the email sending software.
Blacklisted sending server
The sending server has been blacklisted on the IP blacklist.
Sending server listed on multiple DNSBL
The sending server has been found on multiple blacklists. Releasing the message from quarantine will report it as a classification mistake to correct our systems. For a temporary override please see http://www.spamrl.com
Sending server attempted too many invalid addresses
The email sending server has attempted to deliver email to too many invalid email addresses in a certain time period. Please retry again later.
Blacklisted sender
The sender was added to the custom sender blacklist.
URLBL
A URL within the email has been listed on several blacklists. Releasing the message from quarantine will report it as a classification mistake to correct our systems. The rejection message contains more information about the responsible list.
UCEPP
A token was detected in the message that has been seen in recent spam (e.g. URL, IP, phone number, or other specific details). Releasing the message from quarantine will report it as a classification mistake to correct our systems.
External Pattern Match
The layout & format of the email matches known spam emails already listed. Releasing the message from quarantine will report it as a classification mistake to correct our systems. The rejection message contains more information about the responsible list.
175
Domain Level Control Panel
R
EJECTED
(5
XX
SMTP
RESPONSE
)
User-specified blackhole address
A user specified /dev/null Address. This email will not get delivered anywhere.
Combined Score
The "combined" result provides a weighted classification score of the different classifiers.
Depending on the configured "quarantine threshold", the message will be rejected as spam or accepted. A quarantine threshold score of 0.9 is recommended. To be more tolerable for senders using a wrong HELO/PTR/IP configuration, a score of 0.91 can be set. The lower the quarantine threshold, the more messages will be quarantined as spam. The SMTP message returned for this classification is "High probability of spam" to the sender. Please ensure to release the message from quarantine if it's legitimate, this will adjust the scoring in our various databases.
CRM114
CRM114 is a statistical content check. When a message gets blocked by this classifier on our systems, then this mean there has been a close match within the email that corresponds to an already seen spam message. Releasing the message from quarantine will report it as a classification mistake to correct our systems.
Subject contains invalid characters
When a message is rejected with "550 Subject contains invalid characters" the email subject will have non-ASCII characters, which is not allowed by the RFC. To include non-ASCII characters in subjects, the subject is required to be properly encoded, for example with UTF-
8. Any normal mail client will automatically handle that for you, so it's likely a bug in a custom written script that generated the invalid subject. The evidence header for this classification will show "Badly formed Subject header".
Tokens
Global Tokens (Hosted cloud / Local Cloud)
These are statistical content checks that are built based on data collected from all our clusters and clients worldwide. Releasing the message from quarantine will report it as a classification mistake to correct our systems..
Cluster Tokens (Local Cloud Only)
This is similar to the global tokens, but based specifically on your Local Cloud traffic and reports. Releasing the message from quarantine will report it as a classification mistake to correct our systems.
Sanesecurity
We make use of certain datasets from Sanesecurity. To decode Sanesecurity signatures please check here.
Safebrowsing
In case your message has been rejected with "safebrowsing" in the rejection message, it means it has been (recently) listed by Google as hosting malicious files.
Header is too long
176
Domain Level Control Panel
R
EJECTED
(5
XX
SMTP
RESPONSE
)
Mai Assure by default will reject emails with excessive large header values, as this is a common indicator for non-legit emails.
Restricted characters in address
In case your message has been rejected with "550 restricted characters in address" in the rejection message, it means that the recipient address contains a character that is not accepted by the system, for example: "&". You can control which characters are allowed for a domain on the "Domain settings" page.
Relay not permitted
In case your message has been rejected with "550 Relay not permitted!" in the rejection message, it means that delivery was attempted to the incoming filtering service on port 25 to a domain which has not (yet) been added to the filtering solution. To resolve this, please add the domain to the incoming filtering service. If you're trying to use the outgoing filtering service, please ensure to use the outgoing filtering service port 587 instead.
Message submission is for authorised users only!
This indicates you're attempting delivery via our outgoing email filter on port 465/587
(default). If you're receiving this response to an incoming email delivery attempt, your mail server is wrongly set up (and likely a misconfigured version of Lotus Domino). If you're trying to send outgoing email, please ensure to provide a valid username/password to authenticate.
Legitimate bounces are never sent to more than one recipient
In case your message has been rejected with "Legitimate bounces are never sent to more than one recipient" in the rejection message, it means that the mail server was trying to deliver an email to multiple recipients with an empty "MAIL FROM:<>" (return-path). The SMTP RFC
5.3.2.1 indicates that null sender emails (bounces) can never be sent to multiple recipients, so there may be be a misconfiguration on the mailserver.
Destination address is not configured
This usually means that the filtered domain is using 'Local Recipients' and that specific email address in not in their list of approved recipients.
The content of this message looked like spam
This indicates the message has been blocked based on our content scanners, as similar messages have been reported as spam. In case the message is legitimate, please ensure to release it from quarantine. This will update the statistical filters to prevent such issues in the future.
Unrouteable address
This error occurs if there is a (permanent) network error delivering to the destination mail server. This issue is unrelated to the Mail Assure software and indicates a network problem.
Possibly the DNS servers of the domain are broken, or they cannot be reached from the filtering server. Alternatively it's possible the destination hostname or IP does not exist, or is unreachable because of a permanent issue. You can check for DNS errors on the following page: http://dnscheck.sidn.nl/. Please contact your network administrator to investigate any networking issues.
We do not accept mail from this address
177
Domain Level Control Panel
R
EJECTED
(5
XX
SMTP
RESPONSE
)
This error occurs if the sender has been manually added to the "Sender blacklist" for the receiving domain.
We do not accept message/partial messages here
Before people had a permanent internet connection, sending larger emails was timeconsuming and often failed. Therefore older email clients sometimes still break up large emails into separate parts for delivery. This old email feature is not used anymore nowadays, and imposes a severe risk as it makes detection of viruses impossible (as viruses would be split over separate emails before being assembled again by the destination email client). Please ensure to resolve your email client settings to to split up larger emails.
DMARC - REJECT
This error occurs if the sender's domain has a strict DMARC policy in place. If the sender's
DMARC record is set to "REJECT" and the messages come from IP addresses that are not in the sender's SPF, then these are rejected and not quarantined.
DMARC - Quarantine
This error occurs if the sender's domain has a strict DMARC policy in place. If the sender's
DMARC record is set to "QUARANTINE" and the messages come from IP addresses that are not in the sender's SPF, or have a failed DKIM, then these messages are quarantined. Whitelisting will not bypass this.
Outgoing Filtering - Domain Level
n n n n n n n n n
Manage Identities - Domain Level
Manage Outgoing Users - Domain Level
Clear Callout Cache - Outgoing
Generate Outgoing Report - Domain Level
View Domain Statistics (Incoming)
Outgoing Blacklist Filtering Rules
Outgoing Log Search
The Outgoing Log Search works in the same way as the Incoming Log Search but logs all outgoing messages over the past 30 days. Available from the Domain level and Email level
Control Panels, from
Outgoing - Log Search
.
178
Domain Level Control Panel
Tip
- Using the Outgoing Log Search you can filter outgoing messages that have been rejected and quarantined and then go on to release or release and train these as required.
For more information about the filters and actions available, see
.
Generate DKIM Certificate
DKIM adds a special DKIM Signature to the email headers. This signature contains a hashed value of the content (both important headers and the body). When a server that is checking for
DKIM receives an email, it will do the following:
1.
Retrieve the public key from the DNS of the sending domain.
2.
Use the key to decrypt the signature.
3.
Verify the content.
Note
- The exact actions a mail server takes when it discovers an invalid signature depend on the configuration of that server.
To generate a DKIM certificate:
1.
In the Domain Level Control Panel, select
Outgoing - Generate DKIM Certificate
.
2.
Enter the DKIM selector and click on
Generate and save new private/public pair
.
You now need to save this in your DNS as a TXT record.
Manage Identities - Domain Level
The Domain level
Manage Identities
page contains the same features as the
Manage
Identities
page found at Admin level. The Domain Level version is specific to the logged in domain.
For information on the features available, see
Manage Identities - Admin Level
.
Manage Outgoing Users - Domain Level
The Domain level
Manage Users
page contains the same features as the
Manage Users
page found at Admin level. The Domain Level version is specific to the logged in domain.
179
Domain Level Control Panel
For information on the features available, see
Manage Outgoing Users - Admin Level
See also: n n
Edit an Outgoing User
1.
Go to
Outgoing - Manage users
.
2.
Click on the dropdown alongside the user you want to edit and select
Edit
.
The
Outgoing User Settings
page is displayed.
3.
Edit the user settings as necessary. For details of each setting see
.
4.
Click
Save
when finished.
Manage Outgoing Settings
In the outgoing
Settings
page you can set the administrator's contact email for your domain.
In the Domain Level Control panel, select
Outgoing - Settings
.
The address configured here is the one to which abuse reports are sent when outbound messages are blocked, see
Configure the Abuse Report Address
.
180
Domain Level Control Panel
Configure the Abuse Report Address
An ARF (Abuse Reporting Format) report is an email format abuse report which is generated every time an outgoing sender's message is rejected. The report is sent to the Admin contact entered in the Domain Level,
Outgoing - Settings
page.
When using the Outbound filter, it is highly recommended that you set this up to identify spammers in your network.
1.
In the Domain Level Control Panel, select
Outgoing - Settings
.
2.
In the
Administrator's contact
field, enter the email address to send the abuse reports.
3.
Click
Save
.
Note
- The address that is configured should be an address that has no inbound filtering, and not a "freemail" address as these can often cause problems in receiving the reports.
It is also possible to use other methods of monitoring the outbound spam, if using ARF reports is not possible. For example you may use using API's, CSV reports and/or IMAP.
181
Domain Level Control Panel
Important
- When spammers are reported in your network, either via ARF reports or other means, ensure that these problem sources (senders, scripts, etc) are dealt with promptly.
Clear Callout Cache - Outgoing
In the
Clear callout cache
page you can manually clear the domain’s incoming callout cache and the outgoing callout cache. This tool is especially useful after changing the domain routes,
DNS records and for removing the good/bad responses from the destination mail server.
1.
In the Domain Level Control Panel, select
Outgoing - Clear callout cache
.
2.
To clear the callout cache for the domain, click on
Clear
.
Generate Outgoing Report - Domain Level
Report on outgoing mail sent in the last hour, 6 hours, 12 hours, 24 hours or 7 days. This report displays the total number of outgoing messages for the domain - and also the number of messages grouped by either identity, envelope sender or from header.
You can access this facility from the Admin and the Domain level Control Panels. This topic covers the report that is accessed from the Domain Level.
1.
In the Domain Level Control Panel, click on
Outgoing - Outgoing reports
. The
Outgoing reports
page is displayed.
182
Domain Level Control Panel
The Domain that you are logged into is displayed in the
Domain
field.
2.
From the
Period
dropdown, choose from: n
6 hours n
12 hours n
24 hours n
7 days
3.
Alongside
Classification
, select which mail you want to include - either Accepted,
Rejected or All.
4.
In the
Group by
dropdown, select how you want your mail grouped in the report output:
By identity, envelope sender or from header.
5.
Click on
Show
to generate your report.
The report details are displayed at the bottom of the page.
183
Domain Level Control Panel
Tip
- You can also access the Outgoing reports facility from the Admin Level Control Panel
- where you can report on all of your domains. See
Generate Outgoing Report - Admin
View Domain Statistics (Outgoing)
This page displays statistics of your domain's outgoing email traffic over a specified time-frame.
In the Domain Level Control Panel, go to
Outgoing - Domain statistics
:
184
Domain Level Control Panel
Statistics displayed are described in
View Domain Statistics (Incoming)
.
Outgoing Blacklist Filtering Rules
In the Outgoing Blacklist Filtering Rules page you can view all blacklist filtering rules that have been set up for your domain's outgoing mail and you can also add new ones. Outgoing mail that matches any of the rules will always be blocked.
The rules are based on Python's regular expression (regex) syntax. (For more information on regular expressions, see regex101.com
).
You can access this page at the Admin Level and the Domain Level.
n n
View Outgoing Blacklist Filtering Rules
Add Outgoing Blacklist Filtering Rule
Temporary Log
The Temporary Log feature (currently in Preview mode) allows you to view logs for outgoing mail which has not completed processing but may already have been delivered. These files do not show up in the standard Log Search because this would slow down the search significantly.
1.
You can access this from the Admin or Domain Level Control Panels by selecting
Outgoing
- Temporary log (preview)
.
185
Domain Level Control Panel
2.
Click on
Show Results
to show all temporary logs or use the
Query Rules
panel to filter your search.
Archiving - Domain Level
You can access Archived messages at the Domain and Email Levels. At the Domain Level you can search your search and manage all archived emails on that domain.
n n n n n
186
Domain Level Control Panel
Enable Archiving on a Domain
1.
From the Admin Control Panel, click on
Overview
in the
Domains
panel.
2.
Click on the domain you want to enable archiving for. The Domain Control Panel is now displayed.
3.
Alternatively, you can access the domain level control panel directly by logging in to Mail
Assure with your domain login - see
.
4.
In the
Archive
panel, click on
Status
.
187
Domain Level Control Panel
5.
Click
Enable
.
The Archive is now enabled and a list of parameters and values is displayed.
Search Archive
Before you can search your Archive it needs to be enabled, see
Enable Archiving on a Domain .
You can search your own message archive when logged in as an Email user to the Email Level
Control Panel or search your domain's archived messages from the Domain Level Control Panel.
To search your archived messages:
1.
In the Domain Level Control Panel or the Email Level Control Panel, select
Archive -
Search
.
188
Domain Level Control Panel
2.
First you need to index the messages before you can search them in the Archive.
Note
- In
Archive - Settings
, you can choose the archive indexing options. If you select everything, the index creation will take longer due to the amount of data to parse. If you limit your selection e.g. headers, html and text, then it will take a lot less time to index your messages. For more information, see
3.
Enter the
Date range
you want to use.
4.
In the
Number of days available
field you are specifying the amount of time that the archive search can be performed on the index. After this number of days, a new index will need to be created. The shorter amount of time you enter here, the less time the index creation will take. The maximum number of days you can store an index for is 7 days.
5.
Click on
Create index
.
Once the index is built, the available archive search filters are displayed.
6.
In the
Query
field, enter your search query.
189
Domain Level Control Panel
7.
From the
Mode
dropdown, select which mode you want to use (All, Any, Boolean or
Phrase).
8.
Choose whether you want to search incoming messages or outgoing messages or both by placing a tick in the boxes provided.
9.
Click on
Start search
.
The search results are displayed at the bottom of the page:
190
Domain Level Control Panel
Important
- If you are logged in as the domain user for the domain, or as an admin user whose access to view/export Archive messages is restricted (in
Webinterface users - Manage admins
by activating
Protection for archived messages
), you will not be able to view message content. If you click on a message in the Archive search results you will be prompted to go through an authentication process in which you can authenticate as an Email user by logging in with your credentials. Only then will you be able to see your own message content - and not that of any other user.
Tip
- It may be faster to use the incoming/outgoing
Log Search
if mail was sent/received less than 30 days ago. See
and
.
Manage Archive Settings
In the Archive
Settings
page you can manage archive settings for your domain including how many days to store emails and what parts of the message you want to index.
191
Domain Level Control Panel
1.
In the Domain Level Control Panel, select
Archive - Settings
.
2.
If you want to remove stored emails after a set amount of days, select
Expire messages
and enter the number of days in the
Number of days to store email
field.
3.
In the Indexing options panel, select which contents you want to index from those available: n
Message headers - Searches for text in the header name or value of the message.
For example, searching for messages that have a X-Campaign header, or that have a particular name in the CC header.
192
Domain Level Control Panel n
HTML - Searches the HTML version of the message. Most messages will include both HTML and plain text versions of the message text. Because some messages do not have both HTML and plain text versions it is recommended to keep this option enabled.
n
Text - Searches the plain text version of the message. Because some messages do not have an HTML version, or the text cannot be extracted from the HTML you should nearly always leave this option enabled.
n
Images (via OCR) - Searches text contained within an image. When messages containing images are received, the images will be processed via OCR and any text found will be added to the index.
n
Attachments/Documents (.doc) - Searches for text in a Microsoft Word document
(Office 2003 and earlier) .doc attachment.
n
Attachments/Documents (.docx) - Searches for text in a Microsoft Word document
(Office 2007 and later) .docx attachment.
n
Attachments/Documents (.pdf) - Searches for text in an unencrypted PDF document attachment. The text content of the pdf as well as some meta-data (e.g.
author and subject) will be added to the index, but images are not processed with
OCR.
4.
Click on
Update
.
View Archive Status
In your domain Control Panel, click on Status. The following Archive information is displayed: n n n n n n
Status
Space used
Archive mail
Number of days emails are stored
Soft quota
Hard quota
Manage Archived Recipients
Enable and set up journaling for archived recipients in your domain:
Enable Journaling for Archive Recipient
193
Domain Level Control Panel
Enable Journaling for Archive Recipient
To set up journaling you need to configure both Mail Assure and also your mail server.
The following describes the steps you need to take to set up Journaling in Mail Assure and
Microsoft Exchange:
Configure Journaling in Mail Assure
1.
Enable jornaling and enter the journaling address in the
Archived Recipients
page: In the Domain Level control panel for the relevant domain, go to
Archive - Archived
Recipients
.
Because the journaling address uses the <domainname>, it is treated as an internal address. Therefore, you need to perform the following on your mail server:
2.
Create this journaling address as a contact on your mail server so that messages to that address will be routed externally - see
Step 1 - Add New External Mail Contact for
3.
Set up a journaling rule on your mail server to send journaling reports to that address see
.
Configure Journaling in Microsoft Exchange 2010
n n
Step 1 - Add New External Mail Contact for Journaling Address
.
Step 2 - Add New Journal Rule .
Step 1 - Add New External Mail Contact for Journaling Address
1.
Select
EMC - Recipient Configuration - Mail contact.
2.
Right click and select
New Mail Contact
.
3.
Select
New Contact
.
4.
Select
Specify the Organizational unit
and choose
<root domain>/Users
.
5.
Edit
External e-mail address
and add your journaling email address, for example: [email protected]
6.
Complete the rest of the details as required.
194
Domain Level Control Panel
Step 2 - Add New Journal Rule
1.
Open
EMC - Organization Configuration - Hub Transport - Journal Rules
.
2.
Right click and select
New Journal Rule
.
3.
Select the mail contact you added in step 1 to
Send Journal reports to e-mail address
.
4.
Select
Internal
Scope.
5.
Select
Journal messages for recipient
and select the
Dynamic Distribution Group
for this domain.
Export Archived Messages
In this page you can export archived messages for a specified date range to a destination email of your choosing.
All the archived emails from that period will be downloaded as individual files in a zip archive.
You can export archived messages from the Domain Level Control Panel and the Email Level
Control Panel.
1.
Go to
Archive - Export.
2.
Enter the
Date range
.
195
Domain Level Control Panel
3.
If you are accessing at the Email Level, enter where you want the archive to be sent in the
Destination email
field.
4.
Click on
Export
.
The Archive will either be downloaded (Domain Level) or sent to the destination email address (Email Level).
Server
View API Calls History - Domain Level
View API Calls History - Domain Level
You can view your API calls history from Admin level and from Domain Level. At Domain Level you can see all API calls for the logged in domain.
In the Domain Level Control panel by selecting
Server - API calls history
.
For filter details, and how to access the API call history at Admin Level, see
.
196
Domain Level Control Panel
Protection Reports
The Protection Reports are digests of the incoming spam messages that have been quarantined.
These reports are available to Domain and Admin users from the Domain Level Control Panel.
One of the reports, the Periodic user report, is available to Email users from the Email Level
Control panel.
The following reports are available from the
Protection reports
panel: n n n
On-demand Domain Report - Allows you to send a report for the specified day or week to the address you specify.
Periodic Domain Report - Sends a daily digest of all the previous day's blocked messages for all the domain's users.
Periodic User Report - Sends each individual domain user an overview of the previous day's messages that were quarantined for that user. You can manually add users, import a CSV file of multiple users or enable it for all recipients.
Note
- The Periodic User Report is the only protection report which is available to
Email users - from the Email Level Control Panel.
On-demand Domain Report
Reports on spam and virus messages blocked in the specified timeframe.
Allows you to send a report for the specified day or week to a particular email address.
In the Domain Level Control Panel, click on
Protection Reports - On-demand Domain report
.
197
Domain Level Control Panel
Periodic Domain Report
The Periodic Domain Report sends a daily digest of all the previous day's blocked messages for all the domain's users.
1.
In the Domain Level Control Panel, click on
Protection report - Periodic domain report
.
2.
The
Periodic Domain Report
page is displayed:
198
Domain Level Control Panel
3.
To enable the report tick the
Report enabled
box.
4.
In the
Recipient address
field, enter the report recipient(s) email address - separate multiple recipients with a comma.
5.
From the
Report Frequency
dropdown, select Daily or Weekly.
6.
Select the
Language
you want the report to be in.
7.
For the report
Format
select either HTML or PDF.
8.
Select the
Include extra spam table
option if you want to add a table of messages that were rejected but not quarantined to the report.
9.
If you want the report to be sent even when no messages have been quarantined in the set period, select
Send report with no quarantined messages
.
10.
Once you've made your changes, click on
Update
.
199
Domain Level Control Panel
Periodic User Report - Domain Level
Sends each individual domain mail recipient an overview of the previous day's messages that were quarantined for that recipient. You can access this report from
Protection Reports -
Periodic User Report
from the Domain and Email Level Control Panels.
At the Domain Level, you can manually add users, import a CSV file of multiple users and enable the report for all recipients.
200
Domain Level Control Panel
Add a Report Recipient Manually
1.
In the Domain Level Control Panel, select
Protection report - Periodic user report
.
All existing report recipients are listed in the Periodic user report page.
2.
Click on
Add a recipient
to open the
Enable for recipient
page:
201
Domain Level Control Panel
3.
In the
For address
field, enter the local part of the user you want to report on. Because you are logged into a domain, the domain part of the email address is already there.
4.
In the
Send to
field, enter the email address you want to send the report to.
5.
From the
Report Frequency
dropdown, select Daily or Weekly.
Note
- If you would prefer to report on this data more frequently, you can use the
Incoming/Outgoing Log Searches to create an Email Scout Report. This report can be set up to report on the same data more frequently - at your own specified times.
See
Create and Email Log Search Report
.
6.
Select the
Language
you want the report to be in.
7.
For the report
Format
select either HTML or PDF.
8.
Select the
Include extra spam table
option if you want to add a table of messages that were rejected but not quarantined to the report.
9.
When finished, click on
Enable
to activate your report.
202
Domain Level Control Panel
Once a user is added to the list they receive a welcome email with a confirmation that their quarantine is enabled. They start receiving reports containing blocked messages daily or weekly (depending on the Report Frequency chosen) and they also have a link they can use to create a Mail Assure web interface account if needed.
Tip
- Email users logged into the Email Level Control Panel can set up the Periodic user report for their own quarantined messages, see
Enable Periodic User Report - Email
Manage Domain Report Actions
1.
In the Domain Level Control Panel, go to
Protection report - Domain report actions
:
2.
Select from the following which options you wish to be available to users in the Protection report. Settings will apply to the Domain Level report and any Email user reports that do not have custom settings: n
Release - Release the message from the quarantine n
Release and train - Release the message from the quarantine and train the system to recognize as not spam n
Whitelist and release - Whitelist sender and release from quarantine for delivery to the recipient.
n
Blacklist and remove - Blacklist sender and remove the email from the system.
3.
Click
Update
to save your changes.
Email Restrictions
Restrict which emails are allowed based on attachment type and file size.
n n
Manage Attachment Restrictions
203
Domain Level Control Panel
Manage Attachment Restrictions
The
Attachment restrictions
page allows you to configure which email attachments to allow and which to block.
In the Domain Level Control Panel, select
Email restrictions - Attachment restrictions
the
Attachment restrictions page is displayed:
204
Domain Level Control Panel
205
Domain Level Control Panel
The following restrictions can be configured:
R
ESTRICTION
Blocked Extensions
Disallowed release extensions
Restriction options
D
ESCRIPTION
Messages that have an attachment with any of the selected extensions will be rejected.
You can add new extensions to those listed using the
Add new extension
feature.
Email users will not be allowed to release messages that contain attachments with the selected extensions.
You can add extensions to this list using the
Add new extension
feature.
n n
Block password-protected archive
attachments - If enabled, blocks messages with password protected attachments like zip files.
Block potentially unwanted
attachments - If enabled, rejects attachments that are considered dangerous or unwanted. For example, compressed executable files (e.g. UPX packers), password tools, network tools, peer-to-peer clients, remote access applications, system tools, spying tools and documents containing scripts.
206
Domain Level Control Panel
R
ESTRICTION
Additional restrictions
D
ESCRIPTION n
Block attachments that contain
hidden executables - If enabled,
ZIP, TAR, GZIP, BZIP2 and 7Z archives
(other than those compressed with deflate64) are checked and the message will be rejected if the archive appears to contain an executable.
Message link size limit (in bytes)
- This option restricts the amount of data that is downloaded per message. Links in messages to executable files that would be blocked as attachments are followed and the content is checked against an anti-virus database.
Maximum MIME defects
- Messages that are sent with standard email clients have no defects, whereas spam messages are often generated with poorly developed software and have many defects. Normally we reject messages with defects but if you have a need to receive defective messages, you may set a limit or disable this check. If the defective messages come from a single sender, it would generally be better to either convince the sender to fix their software or whitelist that sender.
207
Domain Level Control Panel
R
ESTRICTION
Scanned link extensions
D
ESCRIPTION
If the
Message link size limit
is set (above), then links in messages to files with the selected extensions will be scanned for viruses and other malware.
You can add extensions to this list using the
Add new extension
feature.
Manage Email Size Restriction
In the Email size restriction page you can set the maximum accepted size for incoming and outgoing emails.
1.
In the Domain Level Control Panel, select
Email restrictions - Email size restriction
:
208
Domain Level Control Panel
2.
Enter the email size limit (under 2048 MB) or select
No limit
if you do not want to limit the size of emails.
3.
If you have set a limit, select the preferred
Action for oversized messages
- either quarantine or reject.
4.
Click
Update
to save your changes.
Whitelist/Blacklist
You can use Mail Assure's Whitelist to list email addresses from which incoming mail (which would usually be identified as spam) will always be allowed. Conversely, use the Blacklist to block incoming mail from known spammers.
You can do this from the Admin Level, Domain Level and Email Level Control Panels: n n n
Admin Level - Manage whitelisting and blacklisting for all of your domains.
Domain Level - Manage whitelisting and blacklisting for that specific domain.
Email Level - Manage your own whitelisting and blacklisting.
You can perform the following tasks: n n n n
- Whitelist incoming mail from specific email senders.
- Whitelist incoming mail to specific email recipients.
- Blacklist incoming mail from specific email senders.
- Blacklist incoming mail to specific email recipients.
Webinterface Users
n n n
Set up LDAP Authentication
You can only set up LDAP Authentication for Email Level users from the Domain Level Control panel.
209
Domain Level Control Panel
1.
In the Domain Level Control Panel, select
Webinterface Users - Manage Email Users
.
The
Manage email users
page is displayed:
2.
Click on
LDAP authentication
at the top of the page, to expand the LDAP section:
210
Domain Level Control Panel
The following settings are available:
211
Domain Level Control Panel
S
ETTING
Authentication mode
Domain controller
Security protocol
Bind DN
Search base
D
ESCRIPTION n
AD - Windows Active
Directory n
LDAP - Select this for LDAP authentication
In the format server:port (must be open in firewall to accept connections).
The type of security used on the connection - usually None or
TLS.
This is where Mail Assure should search for the username. This should be the folder or folder above, where all the users are contained.
This is the LDAP/AD value which the service will look for at login time. i.e. if the user enters [email protected], the service will send 'john' to the server for authentication. The value entered here should contain the value
'john' to be able to authenticate this user. If the email was [email protected], the username would need to be
'john.brown' to work. The domain at login time is just to identify the domain's configuration to use, and the local part is what is sent to the server to authenticate. Note -
Alias addresses will not work for login.
3.
Once you have entered the required details, click on
Save
.
212
Domain Level Control Panel
Other - Domain Level
n n n
Manage Your Domain User Profile
Manage Your Domain User Profile
When you are logged in as a Domain user, the
User profile
page allows you to perform the following: n n n n n n
Change your password - You need your old password in order to do this.
Change the Domain user email address
Activate/inactivate the feature preview option which shows upcoming system features
Activate/inactivate the advanced whitelist/blacklist custom filtering rules. By activating the
'
Use advanced custom filtering rules
' option you access the advanced page when creating a new custom whitelist or blacklist filtering rule. If this setting is
Inactive
the simple page is displayed. For more information, see
Add an Incoming Whitelist Filtering
,
Add an Incoming Blacklist Filtering Rule
or
Add Outgoing Blacklist Filtering Rule .
Configure two step authentication
Enable notification when your account is accessed from a new location or IP address.
From the Domain Level Control Panel, select
Other - User profile
.
213
Domain Level Control Panel
214
Email Level Control Panel
Email Level Control Panel
The Email Level Control Panel allows Email Level users access to many Mail Assure features including their incoming and outgoing log searches, spam quarantine and incoming delivery queue. It also enables them to access and reply to emails in the event that their mail server is offline or down.
Accessing the Email Level Control Panel
As an Email user you access the Email Level Control Panel directly when you log in.
As an Admin or Domain user you can access the Email Level by using the 'Log in as' facility and logging in as an Email user. See
.
Features
Once logged into the Email Level Control Panel you can access the following features: n n n n n n n
Incoming and Outgoing Log Searches
- Search incoming and outgoing traffic over the past 30 days and create reports on the data available. See
View your Incoming Delivery Queue
- Incoming messages which have temporarily failed to deliver to your mailbox are stored here. You can view these messages and reply to them. See
and
Reply to Email in the Delivery Queue
Spam Quarantine
- View and manage your incoming messages that have been quarantined. See
View Spam Quarantine - Email Level
.
Train Spam/Train not Spam
- Train the system to recognize and treat messages you have received as spam or not spam. See
and
and also
Release and Train Quarantined Messages
Archive
- Search your archived messages and use the Archive Export feature. See
and
.
Reporting
- Enable your Periodic User Report, see
Enable Periodic User Report - Email
User Profile
- Configure your profile settings, see
Manage your Email User Profile
215
Email Level Control Panel n
Send Email
- When your mail server is not allowing you to send mail, for whatever reason, you can send emails vie the Mail Assure application. See
Incoming Log Search - Email Level
Search your received, blocked and temporarily rejected incoming messages over the past 30 days.
Go to
Incoming - Log search
:
For full details of what you can do on this page, see
.
Note
- You can also access this page via the Admin and Domain Level Control Panels when logged in as an Admin or Domain user with the required permissions, using the
'Login as' feature. See
.
216
Email Level Control Panel
View Spam Quarantine - Email Level
Access the Spam quarantine to view incoming messages that have been blocked as spam.
Select
Incoming - Spam quarantine
.
The
Spam quarantine
page is displayed, listing all messages that have been quarantined:
In this page you can: n n n n n n
Search for a quarantined message - Using the
Search
fields at the top of the page.
Preview quarantined message content - By clicking on the message link in the
Subject
column. See
View Quarantined Message Content
Empty spam quarantine - Click on the
Empty spam quarantine
button at the top right of the page.
Release quarantined messages - Allow messages to be delivered to the recipient. See
.
Release and train messages - Allow messages to be delivered and train the system to recognize future messages from this sender as not spam. See
.
Remove messages - See
Remove Messages from Quarantine .
See also:
217
Email Level Control Panel
Incoming Rejection Classifications
Enable Periodic User Report - Email Level
Set up and send yourself a report containing an overview of your previous day's quarantined messages.
1.
In the Email Level Control Panel, select
Protection report - Periodic user report
.
2.
If the table is blank, you have not already set this up. To set this up, select
Add recipient
.
3.
The
Enable for recipient
page is displayed.
4.
In the
Send to
field, enter where you want your report to be sent.
5.
From the
Report Frequency
dropdown, select Daily or Weekly.
6.
Select the
Language
you want the report to be in.
7.
For the report
Format
select either HTML or PDF.
218
Email Level Control Panel
8.
Select the
Include extra spam table
option if you want to add a table of messages that were rejected but not quarantined to the report.
9.
Click on
Enable
to activate the report and close the dialog.
The report is added to the table:
Using the dropdown to the left of the report, you can choose to the report.
Edit
,
Disable
or
Remove
Whitelist/Blacklist - Email Level
You can use Mail Assure's Whitelist to list trusted email addresses - from which incoming mail
(which would usually be identified as spam) will always be allowed. Conversely, use the Blacklist to block incoming mail from known spammers.
n n
Manage Sender Whitelist - Email Level
- Whitelist incoming mail from specific email senders.
Manage Sender Blacklist - Email Level
- Blacklist incoming mail from specific email senders.
219
Email Level Control Panel
Manage Sender Whitelist - Email Level
Use the Sender Whitelist to ensure that incoming emails from listed senders will always be allowed.
In the Email Level Control panel, select
Whitelist/Blacklist - Sender whitelist
.
The
Sender whitelist
is displayed:
Add Sender to Whitelist
You can add multiple senders to the whitelist by uploading a CSV file or you can add senders manually.
220
Email Level Control Panel
To add a sender manually:
Enter the Sender email address or domain in the
Sender
field and click on
Add.
Manage Sender Blacklist - Email Level
Incoming mail received from senders listed in the Sender Blacklist will always be rejected.
In the Email Level Control Panel, click on
Whitelist/Blacklist - Sender blacklist
.
The
Sender Blacklist
page is displayed:
221
Email Level Control Panel
Add Sender to Blacklist
You can add multiple senders to the blacklist by uploading a CSV file or you can add senders manually.
To add a sender manually:
222
Email Level Control Panel
Enter the Sender email address or domain in the
Sender
field and click on
Add.
Manage your Email User Profile
The
User Profile
page allows you to manage your profile settings.
From the Email Level Control Panel, select
Other - User profile
.
The
User's profile
page is displayed:
223
Email Level Control Panel
From this page you can perform the following tasks:
224
Email Level Control Panel n
Change your password - You need your old password in order to do this.
Note - If LDAP authentication is configured, this option will not be available.
n n n
Enable/disable the feature preview option which shows upcoming system features.
Configure two step authentication.
Enable notification when your account is accessed from a new location or IP address.
After making any changes, click
Save
.
225
Download
Advertisement
Key features
Domain Management
Incoming Filtering
Outgoing Filtering
Archive
Private Label
Server
Webinterface users
Other
Frequently asked questions
Mail Assure is an email security system to protect domains from spam and virus threats.
The user types that can access Mail Assure are: Admin users, Domain users, and Email users.
Admin users have access to all levels of the Mail Assure Control Panel, Domain users have access to their own Domain Level Control Panel, and Email users can manage their own email settings, access the Quarantine, etc.