Resolved! Wildcards in safelist
Is it possible to use wildcards/regex in SLBL? Like, for example, allow all senderdomain.com to be safelisted for all my users of recipientdomain.org
Is it possible to use wildcards/regex in SLBL? Like, for example, allow all senderdomain.com to be safelisted for all my users of recipientdomain.org
If we whitelist sender/domain/IP Address in the HAT and also in the Incoming mail policy, how mail will be processed ?What will take precedence ?
Hello all, I've got a strange behavior, I don't know if t is normal.Multiple times a day (like a hundred) we observe logs in AMP stating first that the recommended action for the file is to send the file for analysis, and then that the fils was not s...
Whenever I send an email to a specific yahoo email user with some attachment, the email was bounced with the following error. What is the probable solution?5.3.0 - Other mail system problem 554-Message not accepted due to failed RFC compliance
Hican any body know ironport listen port 587, We have requirement ,external parter want to send mail our domain , they have restriction on their firewall they are allow port 587 instead of 25. could you please suggest what need to do to allow that pa...
HELLO,is there any possibility to get SPF working when cisco ESA is behind smtp relay?i just added the smtp relay in incoming relay section, and i can see the real public IP of the sender, but SPF always fail, because it see the email was sent from t...
Hi, I have a defang rule for incoming email in Cisco cESA (as per screenshot, just example). There are times when incoming email hit default policy, the defang rule will take action and defang the URL inside the email even though the domain of sender...
Hello everyoneI know that minimum requirements needed to install the license of AMP in ESA appliance.I would like to know :Model ESAVersion AsyncOSRAMthanks to all
Hello, We have to configure LACP on ESA and SMA and would like to check that is it available LACP configuration on Ironports? If it is not available, Can it configure with any type of Link Redundancy? Thanks
In our existing virtual SMA appliance is in Internal zone and ESA appliances are in DMZ. We are now deploying a new SMA appliance as a replacing for our existing virtual SMA device.We are enabling secured centralised SPAM Quarantine access to employe...
Hi Fellows one question , is ironport ESA suppoting automatic backup configuration file? i cant find anything about it , only a external script in Unix/Windows
Hello Guys, We are running on 11.0.0-264 which is pretty old and looking for a firmware upgrade on Cisco ESA Virtual Appliances I heard there are some cipher issues on version 13.X. What would be the most stable version of 13.X series firmware for Ci...
Hi community! I'm test driving ESA C000V virtual appliance with External Threat Feed (ETF) via a taxii server.The ETF is configured to scan incoming mail for url reputation and attachment file info. It was successful in the blocking of malicious urls...
We are replacing our old M670 with a new M600v appliance and we are also migrating the data. This SMA is only used for email. I would like to know how much time that will take. Any ideas, estimations? Current disk usage:Spam Quarantine: 1GPolicy, Vir...
Hi Guys: I have a Cisco Ironport Cluster with C370 & C670 devices, I have seen many Potential Directory Harvest Attack detected 3 days ago and some guys got affected during that event. We finally found out the MTA Client involved in this situation an...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
04-16-2025 12:48 AM | ||
04-10-2025 11:17 PM | ||
03-24-2025 09:35 AM | ||
03-11-2025 02:31 AM | ||
03-07-2025 05:07 AM |