03.02.2014 Views

ePrism User Guide - EdgeWave

ePrism User Guide - EdgeWave

ePrism User Guide - EdgeWave

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

How Messages are Processed by <strong>ePrism</strong><br />

How Messages are Processed by <strong>ePrism</strong><br />

The following sections describe the sequence in which the various <strong>ePrism</strong> security features are<br />

applied to any inbound mail messages and how these settings affect their delivery.<br />

SMTP Connection<br />

An SMTP connection request is made from another system. <strong>ePrism</strong> accepts the connection<br />

request unless one of the following checks (if enabled) is triggered:<br />

• Reject on unauthorized SMTP pipelining — Rejects mail when the client sends SMTP<br />

commands ahead of time without knowing that the mail server actually supports SMTP<br />

command pipelining. This stops messages from bulk mail software that use SMTP command<br />

pipelining improperly to speed up deliveries.<br />

• Reject on unknown sender domain — Rejects mail when the sender mail address has no<br />

DNS A or MX record.<br />

• Reject on missing reverse DNS — Rejects mail from hosts where the host IP address has no<br />

PTR (address to name) record in the DNS, or when the PTR record does not have a matching<br />

A (name to address) record. This setting is rarely used because many servers on the Internet do<br />

not have valid reverse DNS records, and enabling it may result in rejecting mail from legitimate<br />

sources.<br />

• Reject on non-FQDN sender — Rejects mail when the address in the client MAIL FROM<br />

command is not in fully-qualified domain form (FQDN).<br />

• Reject on Unknown Recipient — Rejects mail if the specified recipient does not exist. The<br />

system will perform an LDAP lookup on the recipient's address to ensure they exist before<br />

delivering the message.<br />

• Specific Access Pattern (Reject) — The server address or other envelope field matches a<br />

Specific Access Pattern that is set to reject the message.<br />

Mail Header and Message Properties<br />

The connection is now accepted. The message will be accepted for processing unless one of the<br />

following occurs:<br />

• Reject on missing addresses — Rejects mail when no recipients in the To: field, or no<br />

senders in the From: field were specified in the message headers.<br />

• Maximum number of recipients — Rejects mail if the number of recipients exceeds the<br />

specified maximum (default = 1000).<br />

• Maximum message size — Rejects mail if the message size exceeds the maximum.<br />

19

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!