27.11.2012 Views

IronPort - Configuration Guide - AsyncOS 7.6.1

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 5 Configuring the Gateway to Receive Email<br />

OL-25136-01<br />

Note If you have configured your Cisco <strong>IronPort</strong> appliance to use a default domain or to specifically<br />

allow partial domains when sending or receiving email or if you have enabled address parsing<br />

(see “Customizing Listeners” in the Cisco <strong>IronPort</strong> <strong>AsyncOS</strong> for Email Advanced <strong>Configuration</strong><br />

<strong>Guide</strong>) you may not be able to create, send, and receive an email with a missing or malformed<br />

domain.<br />

Step 3 Verify that the message is rejected.<br />

# telnet IP_address_of_<strong>IronPort</strong>_Appliance port<br />

220 hostname ESMTP<br />

helo example.com<br />

250 hostname<br />

mail from: admin<br />

553 #5.5.4 Domain required for sender address<br />

Note that the SMTP code and response is the one you configured for the envelope sender verification<br />

settings for the THROTTLED mail flow policy.<br />

Testing the Sender Verification Exception Table<br />

To confirm that mail from the email address listed in the sender verification exception table is not subject<br />

to envelope sender verification:<br />

Step 1 Add the following address to the exception table with an “Allow” behavior: admin@zzzaaazzz.com<br />

Step 2 Commit your changes.<br />

Step 3 Open a Telnet session to your Cisco <strong>IronPort</strong> appliance.<br />

Step 4 Use SMTP commands to send a test message from the email address you entered in the sender<br />

verification exception table (admin@zzzaaazzz.com).<br />

Step 5 Verify that the message is accepted.<br />

# telnet IP_address_of_<strong>IronPort</strong>_Appliance port<br />

220 hostname ESMTP<br />

helo example.com<br />

250 hostname<br />

mail from: admin@zzzaaazzz.com<br />

250 sender ok<br />

If you remove that email address from the sender verification exception table, mail from that sender will<br />

be rejected because the domain portion of the envelope sender is not DNS verified.<br />

Cisco <strong>IronPort</strong> <strong>AsyncOS</strong> 7.6 for Email <strong>Configuration</strong> <strong>Guide</strong><br />

5-49

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!