03.02.2014 Views

ePrism User Guide - EdgeWave

ePrism User Guide - EdgeWave

ePrism User Guide - EdgeWave

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring Email Security<br />

SPF (Sender Policy Framework)<br />

<strong>ePrism</strong>’s SPF support prevents spammers from spoofing mail headers and impersonating a<br />

legitimate email user or domain. Unsuspecting users may reply to these seemingly legitimate<br />

addresses with personal and confidential information.<br />

Sender Policy Framework (SPF) provides a means for authenticating the source of an email by<br />

querying the sending domain’s DNS records. The SPF protocol allows server administrators to<br />

describe their email servers in their DNS records. By comparing the headers of the email with the<br />

SPF value, the receiving host can verify that the email is originating from the legitimate mail server<br />

for that domain. This prevents spammers from sending forged emails.<br />

<strong>ePrism</strong>’s SPF actions only apply to incoming mail messages that have failed an SPF check, which<br />

means that the email message does not match the corresponding published SPF record. If a<br />

specific mail server does not have an existing SPF record then the message is processed normally.<br />

It is possible, however, that administrators may misconfigure their DNS SPF records, resulting in<br />

false positives and legitimate hosts being blocked from sending you mail.<br />

SPF is an emerging anti-fraud and anti-phishing technology that is designed primarily as a<br />

mechanism to prevent forged emails rather than an anti-spam measure. It is dependent on network<br />

administrators publishing their legitimate email servers in their DNS records and ensuring these<br />

records are properly configured. St. Bernard encourages customers that use SPF in their DNS<br />

infrastructure to review their own SPF records to ensure they are accurate.<br />

Note: St. Bernard recommends that if you enable SPF, you should set the action to modify<br />

the subject header rather than reject the message to ensure that false positives due to<br />

sending system misconfiguration are not completely rejected.<br />

Select Mail Delivery -> SPF on the menu to configure Sender Policy Framework settings:<br />

• Enable SPF — Select the check box to enable SPF verification. The SPF action will only apply<br />

to messages that fail an SPF check.<br />

88

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!