
Administrator's Manual
Version 1026
WWW.REDDOXX.COM
Copyright
©2009 by REDDOXX GmbH
REDDOXX GmbH
Saline 29
D-78628 Rottweil
Fon: +49 (0)741 248 810
Fax: +49 (0)741 248 811
E-mail: info@reddoxx.com
Internet: www.reddoxx.com
Support: http://support.reddoxx.net
Revision number 3.2.4
Approved & published 16.03.2010
This manual was prepared with great care. However, REDDOXX GmbH and the author cannot assume any legal or other liability for possible errors and their consequences.
No responsibility is taken for the details contained in this manual. Subject to alternation without notice. REDDOXX GmbH does not enter into any responsibility in this respect. The hardware and software described in this manual is provided on the basis of a license agreement.
This manual is protected by copyright law. REDDOXX GmbH reserves all rights, especially for translation into foreign languages. No part of this manual may be reproduced in any way (photocopies, microfilm or other methods) or transformed into machine-readable language without the prior written permission of REDDOXX GmbH. The latter especially applies for data processing systems.
REDDOXX GmbH also reserves all communication rights (lectures, radio and television).
The hardware and software names mentioned in this manual are most often the registered trademarks of the respective manufacturers and as such are subject to the statutory regulations. Product and brand names are the property of REDDOXX GmbH.
This issue replaces all earlier ones and orients itself on the appliance with respect to naming.
Table of Contents
1.1 Symbolism and Highlights 9
1.2 General Warning and Safety Notices 10
1.2.1.1 General Function Scope 12
2.1 The REDDOXX Appliance – RX-50 15
2.2 The REDDOXX Appliance – RX-100 16
2.3 The REDDOXX Appliance – RX-250 17
2.4 The REDDOXX Appliance – RX-750 18
2.5 The REDDOXX Appliance – RX-2500 19
3.1.2 Integration and Commissioning 22
3.2 Brief Instructions for the Basic Configuration 25
3.2.1 Connection and Network Configuration 25
4 The Administrator Console 33
4.1 Options in the Menu Bar 35
4.1.1 File: System Login/Logout 35
4.1.1.1 Logging in (Connect) 35
4.1.1.2 Logging off (disconnect) 36
4.1.1.3 Exiting the Program (exit) 36
4.1.2.5 Starting the Log Viewer 39
4.1.4.1 Restarting the REDDOXX Appliance 55
4.1.4.2 Turning the REDDOXX Appliance off 55
4.1.4.3 Setting the Time/Date 56
4.1.5.1 License Information 56
4.1.5.4 Start Remote Support 60
4.2 Appliance Configuration 60
4.2.1.1 Network Settings - General 61
4.2.1.2 Network Settings - Network 62
4.2.1.3 Network Settings - Routing 64
4.2.1.4 Network Settings - Time Server 65
4.2.3.6 Settings - Advanced 77
4.2.4.1 Local Internet Domains 84
4.2.4.4 Allowed IP Addresses 92
4.2.4.5 Blocked IP Addresses 93
4.3 Appliance Administration 97
4.3.2.5 Policies – Group Policies 113
4.3.4.1 Filtering the live log 124
4.3.7.3 SMTP Server Service 130
4.3.7.4 SMTP Client Service 131
4.3.7.5 Control Server Service 131
4.3.7.6 Message Validation Service 131
4.3.7.7 Task Scheduler Service 131
4.3.7.8 Portal Communication Service 131
4.3.7.9 Remote Support Service 131
4.3.7.10 Starting, Stopping and Restarting Services 131
4.4.2.1 White list Filters 136
4.4.2.8 Blocking and Admitting 152
4.5.1 Archive Configuration 160
4.5.1.1 MailDepot - General 160
4.5.1.2 MailDepot Archive Data 162
4.5.1.3 MailDepot Filter Settings 163
4.5.1.4 MailDepot Microsoft Exchange Settings 164
4.5.3 Exchange Server Agents 167
4.5.3.1 Adding a new Exchange Server Agent 167
4.5.3.3 Journaling mailbox archiving 170
4.6.1 Ad hoc encryption with MailSealer Light 174
4.6.2 Permanent encryption with MailSealer Light 177
4.6.3 MailSealer Light Gateways 177
4.6.4 Asymmetric encryption with PGP keys and S/MIME 177
4.6.5 Encryption with PGP keys 178
4.6.6 Encryption with S/MIME certificates 178
4.6.7 Encryption with gateway certificates (S/MIME) 178
4.6.8 Configuration of the MailSealer 178
5.1 Operation mode with POP3 under REDDOXX 214
5.2.1.1 Configuration for receiving emails via POP3 215
5.2.1.2 Configuration for sending emails via SMTP 216
5.2.1.3 Configuration of the local internet domains 217
5.2.2.1 Configuration and activation of the bridge mode 218
5.2.2.2 Connecting the appliance for using the bridge mode 219
5.3.1 Logging on to the user console 221
6.1.2 Time Server Settings 226
6.1.3 Backup and Restore Settings 226
6.2.1 Backup and Restore Settings 226
6.2.2 Start an Appliance Backup 227
6.2.3 Start an Appliance Restore 227
6.3.1 Database Maintenance 230
6.3.2 Rebuild the full text index of the MailDepot 231
6.3.3 Set Appliance Settings to Factory Defaults 232
6.4.1 Show size of data partition 233
6.5 Start and Stop Services 235
6.5.1 Start REDDOXX Engine 235
6.5.2 Start REDDOXX Remote Support 235
7 FAQ - Frequently Asked Questions 237
This manual is geared towards the administrator of the REDDOXX Appliance. For better legibility, please note that the term "Administrator" refers to both male and female administrators.
Please read the entire manual carefully to ensure professional application of the REDDOXX Appliance. This is the only way we can ease your work with the REDDOXX Appliance.
In the glossary, you will find a compilation of the terminology used in this documentation together with its respective explanations
The typography used in this manual has the following meaning:
Danger/Warning
All warning and safety notices in this manual are marked this way. Always observe the instructions so there will be no damage to persons and/or objects.
Notice
A notice or tip points out especially important and helpful information about the REDDOXX Appliance. The REDDOXX Appliance can only function correctly and error-free when it is transported, stored, installed, operated and maintained in line with the manufacturer's instructions.
|
Highlight |
Example |
|
Tab |
"Name of the tab" |
|
Field name |
Name of the field |
|
Buttons |
Button |
|
Selection list |
List entry |
|
List entry in list view |
'Entry' |
Also see: Refers to a chapter.
Names
Explanation of the respective name
This manual contains warning and safety notices, which serve for your own protection but also for the protection of the REDDOXX Appliance. In order not to endanger your safety, you have to observe the following basic conditions for the installation, use and operation of the REDDOXX Appliance.
The notices in this manual hare highlighted as follows:
Danger
Omitting precautions and safety measures may lead to severe health damage, injury to persons or even death.
Warning
Only expert personnel are allowed to operate the appliance or remedy possible errors in the hardware. Expert personnel are qualified persons authorized to commission and maintain the device, program the control, operate the hardware according to the safety instructions pursuant to the valid standards and have a corresponding qualification.
Notice
Observe the settings you perform in the REDDOXX Appliance. All setting you make is saved by the REDDOXX Appliance, not the REDDOXX Console. The Console is only the input mask. You will find these notices exclusively in the content of the manual.
Read the warning and safety instructions carefully before commissioning the REDDOXX Appliance.
Danger/Warning
Observe all instructions attached to the REDDOXX Appliance and listed in this manual.
Prior to cleaning the REDDOXX Appliance, pull the mains plug. Do not use any liquid cleaning agents or agents containing aerosols. Only use a damp cloth for cleaning.
Do not use the REDDOXX Appliance near water. Do not spill any liquid on or into the REDDOXX Appliance.
Place the REDDOXX Appliance on a stable surface.
There are ventilation openings in the casing. These openings may not be obstructed or covered. Do not place the REDDOXX Appliance next to or on top of a radiator.
Only use the power source stated at the mains connection. If you are not sure about the kind of power source you have, contact your local energy supply company.
Do not walk on the cable and do not put anything on it.
If you are using an extension cord for the REDDOXX Appliance, make sure that the total amperage or all devices connected to this extension cord does not exceed the admissible amperage for the extension cord.
Do not insert any objects into the ventilation slots of the REDDOXX Appliance.
Do not attempt to service your REDDOXX Appliance yourself with the exception of the cases explained in this manual. Only use the controls mentioned in these instructions. If you open covers with the notice "Warranty void if broken", you may expose yourself to high voltage or other risks. Leave the maintenance of these parts up to expert personnel.
In the following cases, pull the mains plug of the REDDOXX
Appliance out of the outlet and let expert personnel service the
REDDOXX Appliance.
- The cables or the plug are damaged.
-
Liquid was poured into the REDDOXX Appliance.
Despite following
the instructions, the REDDOXX Appliance does not work properly.
The
REDDOXX Appliance was dropped or the casing is damaged.
- The
REDDOXX Appliance shows substantial performance changes.
Always transport the REDDOXX Appliance carefully. Impact stress or dropping can also damage the inside of the device. Do not operate damaged devices!
Thank you for purchasing the REDDOXX Appliance and the corresponding appliance console. The REDDOXX Appliance is an innovative product for the reliable, active and individual prevention of spam problems and legally conform e-mail archiving. In addition, you can also send critical business data and sensitive information in encrypted form to your business partners, so that unauthorized persons cannot read even intercepted mails. With the REDDOXX Appliance, you protect your company from technical and economic damage as well as image damage.
The REDDOXX Appliance filters undesired mail out right from the start. You save a lot of time, because viruses, worms and Trojans cannot penetrate your active network. The REDDOXX Appliance is simply switched before the e-mail server and geared exactly towards the individual requirements of your company.
Our solution is just as
unusual as it is successful:
Contrary
to the standard approach "filtering out what is not desired",
the REDDOXX Appliance pursues the proactive way: "pre-define
what you want!"
The REDDOXX Appliance is an optimally coordinated software and hardware unit, which only selects and forwards desired emails immediately. It is installed between the firewall and the e-mail server and therefore only requires a minimum interference with your company's IT.
The REDDOXX Appliance immediately solves four major problems:
What's spam for one is a relevant mail for the other. This is why the REDDOXX Appliance selects the desired mails and determines the relevance of the mail with the authorization of the sender in case of doubt.
With pre-definition, additional filters and the interactive authorization of the e-mail sender, the REDDOXX Appliance offers the highest chances for success in spam combating and achieves the highest degree of satisfaction for the applicant.
Archiving of all emails through MailDepot:
Organizational transparency and increased productivity.
Prevention of accidental or intentional deletion of relevant mails.
Increased time resources for administrators and users through user-defined access options to archived emails.
Encrypted e-mail transmission with MailSealer
Information about the REDDOXX Appliances
We offer you the custom-tailored solution for your company. In doing so, we consider your individual requirements ranging from the current number of workplaces up to the further development of your company. The different versions ensure that the REDDOXX Appliance meets all the requirements of small, medium and large-sized companies.
The REDDOXX Appliance has a modular structure: It consists of the products
REDDOXX Spamfinder
REDDOXX MailDepot
REDDOXX MailSealer
The REDDOXX Appliance is available in the following versions:
RX-50
RX-100
RX-250
RX-750
RX-2500
REDDOXX general:
Simple structure for fast application within minutes; at the same time compatible with all standardized e-mail servers.
Secure, hardened Linux kernel.
Powerful virus protection through open source technology with ClamAV
REDDOXX Spamfinder:
Powerful spam filtering including CISS technology, which provides a spam reduction rate of almost 100%.
Innovative Advanced Realtime Blacklist Filter, White list Filter as well as additional statistic filters and further content filters as well as Blacklist Filter technologies.
Possibility to generate automated and external backups.
REDDOXX MailDepot:
Automatic audit and manipulation-proof archiving of all emails
Organizational transparency and increased productivity.
The REDDOXX Appliance is installed between the firewall and the e-mail server and therefore only requires a minimum interference with your company's IT.
REDDOXX MailSealer:
Fast encryption and signing of emails
compatible with all standard e-mail programs
supports S/MIME
automatic PKI linkup
Notice
For the hardware data, refer to the chapter "REDDOXX Appliance - Technical Data" in the documentation of your REDDOXX Appliance.
The REDDOXX Appliance RX-50 is suited for the demands of small and medium-sized companies up to 50 User.

Illustration: REDDOXX Appliance - RX-50

Illustration: Connections of the REDDOXX RX-50 Appliance
|
Components |
How to connect the REDDOXX Appliance correctly |
|
1. REDDOXX Appliance |
Connect the REDDOXX Appliance with the mains plug (1). |
|
2. Mains plug |
Insert the mains plug (1) into a suitable outlet. |
|
3. Network cable |
Plug your network cable into LAN-1 (2). |
|
|
|
|
A On/Off switch |
Turn the REDDOXX Appliance on. (front side) |
|
B Monitor connection |
Only for maintenance purposes |
|
C USB |
Only for maintenance purposes |
Attention
Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.
The REDDOXX Appliance RX-100 is suited for the demands of medium-sized companies up to 100 User.
.

Illustration: REDDOXX Appliance - RX-100 with front cover

Illustration: REDDOXX Appliance - RX-100

Illustration: Connections of the REDDOXX RX-50 Appliance
|
Components |
How to connect the REDDOXX Appliance correctly |
|
1. REDDOXX Appliance |
Connect the REDDOXX Appliance with the mains plug (1). |
|
2. Mains plug |
Insert the mains plug (1) into a suitable outlet. |
|
3. Network cable |
Plug your network cable into LAN-1 (2). |
|
|
|
|
A On/Off switch |
Turn the REDDOXX Appliance on. (front side) |
|
B Monitor connection |
Only for maintenance purposes |
|
C USB |
Only for maintenance purposes |
Attention
Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.
The REDDOXX Appliance RX-250 is suited for the demands of large medium-sized companies up to 250 User.

Illustration: REDDOXX Appliance - RX-250 with front cover

Illustration: REDDOXX Appliance - RX-250

Illustration: Connections of the REDDOXX RX-50 Appliance
|
Components |
How to connect the REDDOXX Appliance correctly |
|
1. REDDOXX Appliance |
Connect the REDDOXX Appliance with the mains plug (1). |
|
2. Mains plug |
Insert the mains plug (1) into a suitable outlet. |
|
3. Network cable |
Plug your network cable into LAN-1 (2). |
|
|
|
|
A On/Off switch |
Turn the REDDOXX Appliance on. (front side) |
|
B Monitor connection |
Only for maintenance purposes |
|
C USB |
Only for maintenance purposes |
Attention
Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.
The REDDOXX Appliance RX-750 is suited for the demands of large-sized companies up to 750 User.
![]()
Illustration: REDDOXX Appliance - RX-750 with front cover

Illustration: REDDOXX Appliance - RX-750

Illustration: Connections of the REDDOXX RX-50 Appliance
|
Components |
How to connect the REDDOXX Appliance correctly |
|
1. REDDOXX Appliance |
Connect the REDDOXX Appliance with the mains plug (1). |
|
2. Mains plug |
Insert the mains plug (1) into a suitable outlet. |
|
3. Network cable |
Plug your network cable into LAN-1 (2). |
|
|
|
|
A On/Off switch |
Turn the REDDOXX Appliance on. (front side) |
|
B Monitor connection |
Only for maintenance purposes |
|
C USB |
Only for maintenance purposes |
Attention
Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.
The REDDOXX Appliance RX-2500 is suited for the demands of enterprise-sized companies up to 2500 User.

Illustration: REDDOXX Appliance - RX-2500 with front cover

Illustration: REDDOXX Appliance - RX-2500

Illustration: Connections of the REDDOXX RX-50 Appliance
|
Components |
How to connect the REDDOXX Appliance correctly |
|
1. REDDOXX Appliance |
Connect the REDDOXX Appliance with the mains plug (1). |
|
2. Mains plug |
Insert the mains plug (1) into a suitable outlet. |
|
3. Network cable |
Plug your network cable into LAN-1 (2). |
|
|
|
|
A On/Off switch |
Turn the REDDOXX Appliance on. (front side) |
|
B Monitor connection |
Only for maintenance purposes |
|
C USB |
Only for maintenance purposes |
Attention
Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.
|
Hardware Appliance |
|
RX-50 |
RX-100 |
RX-250 |
RX-750 |
RX-2500 |
|
Basis |
|
DELL OP 760 |
DELL CR100 |
DELL R200 |
DELL R300 |
DELL PE 2950 |
|
Queue capacity |
60 GB |
100 GB |
120 GB |
280 GB |
1000 GB |
|
|
Recommended number of users |
50 |
100 |
250 |
750 |
2500 |
|
|
Raid-Level |
n.a. |
n.a. |
RAID 1 |
RAID 1 |
RAID 5, Hotplug |
|
|
Processor |
1x Intel Cel 440 2,0 GHz |
1x Intel Cel 440 2,0 GHz |
1X Intel DC E2200 |
1X Intel DC E6305 |
2x Intel QC E5420 |
|
|
Memory (RAM) |
512 MB |
512 MB |
1 GB |
2 GB |
4 GB |
|
|
Enclosure |
Desktop . |
19" Short Rack 1U |
19" Rackmount 1U |
19" Rackmount 1U |
19" Rackmount 2U |
|
|
Measures (W x H x D) |
31.4 x 9.26 x 34 cm |
44,7 x 4,27 x 45,61 cm |
44,7 x 4,27 x 54,61 cm |
42,63 x 4,24 x 66,04 cm |
44,3 x 8,64 x 74,4 cm |
|
|
Weight |
7 kg |
8,9 KG |
11,8 Kg |
13,5 Kg |
23 Kg |
|
|
Voltage |
100-240 V |
100-240 V |
100-240 V |
100-240 V |
100-240 V |
|
|
Input power / frequency |
5-3A / 50-60 Hz |
5-3A / 50-60 Hz |
5-3A / 50-60 Hz |
5-3A / 50-60 Hz |
5-3A / 50-60 Hz |
|
|
Operating temperature |
10° -40° |
10° -35° |
10° -35° |
10° -35° |
10° -35° |
|
|
Relative humidity |
8-90% non-condensing |
8-90% non-condensing |
8-90% non-condensing |
20-90% non-condensing |
20-90% non-condensing |
|
|
Certification |
CE |
CE |
CE |
CE |
CE |
|
|
|
|
|
|
|
|
|
|
Virtual Appliance |
RX-50 |
RX-100 |
RX-250 |
RX-750 |
RX-2500 |
|
|
Recommended number of users |
50 |
100 |
250 |
750 |
2500 |
|
|
Required memory (RAM) |
256 MB |
512 MB |
1024 MB |
2 GB |
4 GB |
|
|
number of processors |
1 |
1 |
1 |
1 |
1 |
|
Prior to the installation, check your delivery for completeness. The delivery contains the following products:
REDDOXX Appliance
Software for the REDDOXX consoles on CD
Administrator console
User console
"Manual for Administrators" and "Manual for Users" as PDF files.
Notice
The latest version of the REDDOXX software as well as the manuals can be downloaded in the support section at http://support.reddoxx.net
Receipt
Check the product for damages upon receipt.
If you notice any apparent damage upon delivery or when unpacking the merchandise, contact your retailer.
Warning
Always transport the device carefully. Impact stress or dropping can also damage the inside of the device. Do not operate damaged devices!
This chapter is supposed to help you with putting the REDDOXX Appliance into operation and contains all steps required to ready the REDDOXX Appliance for operation. First we will show you in a diagram where to install the REDDOXX Appliance. The additional chapters then deal with the connection, registration, basic configuration and operation of your REDDOXX Appliance.
The REDDOXX Appliance behaves like a e-mail server vis-à-vis the sender. The first filters already become active while the connection between the sending e-mail server and the REDDOXX Appliance is being established. Depending on the filter settings, the REDDOXX Appliance may already reject emails at this stage.
Also see: "Filters"
The REDDOXX Appliance can manage several e-mail domains and forward the respective emails to the different e-mail servers in your company.
The standard system consists of one or several e-mail servers and the REDDOXX Appliance, which is installed between the e-mail servers and your firewall, if available.

Illustration: Function diagram of the REDDOXX Appliance
You only need a few steps to put the REDDOXX Appliance into operation.
Connect the REDDOXX Appliance with the network,
assign an IP address and
adjust the routing of the e-mail traffic in such a way that incoming mails are forwarded to the REDDOXX Appliance as early as possible so that it can then take care of the subsequent forwarding.
For more information, refer to the
following brief instructions.
Tip
For efficiently combating spam, we recommend installing the REDDOXX Appliance directly behind your firewall as a so-called first mail hop. Then the sender establishes the connection directly with the REDDOXX Appliance.
As the REDDOXX Appliance is capable of learning from your actions, we recommend you also direct the outgoing e-mail traffic through the REDDOXX Appliance.
These ports must be opened for perfect operation of the REDDOXX Appliance:
SMTP/25
TCP in/out
For incoming / outgoing emails
DNS/53
UDP/TCP out
For domain name service requests to your DNS
server.
HTTP/80 TCP out
For communication with the
REDDOXX portal. This is where the license information is checked.
For the REMOTE SUPPORT SERVICE. It is possible to activate a remote access for REDDOXX's technical support via the REMOTE SUPPORT SERVICE, port 80 on the REDDOXX switching computer (RDXCALL).
For Software- and pattern updates, spam validations.
NTP/123 UDP out
For time leveling with
a time server
SMB 137,138 UDP out, 139 TCP out, CIFS 445 TCP
out
for backup and archiving (mail depot) on a remote
Windows/Samba share.
LDAP/389 TCP out,
LDAP/636 out for SSL
For user authentication and recipient
check via Active
Directory, OpenLDAP, Novell eDircetory, Lotus
Notes Domino.
LDAP/3268 TCP out
For higher-performance LDAP queries against a Global Catalog Server.
REDDOXX/4010 TCP in
For the user and
administrator console of the REDDOXX Appliance.
REDDOXX/4011 TCP in
For
communication between admin console and the control service port of
the appliance, required for the cluster manager, diagnostic utilities
and the remote support service.
Notice
You
should especially pay attention to these ports when the REDDOXX
Appliance is included in another network segment, e.g. a DMZ, and
separated from the internal LAN through a firewall.
Connecting the REDDOXX Appliance
Proceed as follows to integrate the REDDOXX Appliance into your system.
Requirements: Read the warning and safety instructions.
Connect the Spamfinder Appliance to the power supply.
Connect a monitor and a keyboard.
Turn the REDDOXX Appliance on.
The
IP address is 192.168.0.1.
Login as user "admin" with the password "AppAdmin". The administration menu appears. For further details and screenshots, refer to chapter 6 - Appliance Console.
Select the item – Settings
Select the item – Network
Enter the network data. (host name, domain, IP address, netmask, gateway, 1st DNS, 2nd DNS)
Press the TAB key to reach OK and press ENTER. Now the network interface is re-initialized.
Select BACK to access the main menu.
Select EXIT to exit the console program.
Connect a network cable (RJ45) and then connect the appliance with your network.
Proceed with the configuration of the admin console as described in the following chapter.
Notice
For
function descriptions and the exact connections of the REDDOXX
Appliance, refer to the main chapter 2 and there to the different
model variants.
Performing the Login
For safety reasons, the REDDOXX Appliance is only accessible via login. Therefore you have to authenticate yourself as follows with your user name and password:
Requirements: Purchase of the REDDOXX Appliance with the valid licenses.
Copy the content of
the REDDOXX CD onto your computer.
The
files may be copied to any directory of your choice.
Double-click on the file rdxadmin.exe.
The
login window opens.

Illustration: Login window
Enter the corresponding hostname.
Enter your user name.
Enter your password.
Notice
The
following standard values are set upon delivery of the REDDOXX
Appliance:
User
name: sf-admin and
password:
admin
In realm, select the option "local".
A
realm is a section similar to a domain where you authenticate
yourself.
Select the desired language
in the selection list, which
you want to use to display your program.
The
selection contains the currently installed languages.
Click on the button LOGIN.
The
welcome window opens.

Illustration: Welcome mask
Click on the button „Setup assistant" to start the assistant for the first configuration of the REDDOXX Appliance.
Notice
Only
perform the setup assistant once.
Making the Network Settings
To help you with the basic configuration, the setup assistant takes you through all relevant settings.
Requirements: The window for the network settings is active.
Notice
If
the network settings of the appliance were previously configured via
the Appliance Console (chapter 3.2), you can simply take over the
data listed there.

Illustration: Basic configuration – network settings
Enter the host name.
Enter a/your domain.
Enter the IP address of the REDDOXX Appliance.
Enter the corresponding subnet mask.
Enter the standard gateway for the Internet connection.
Enter at least one DNS
server.
Notice
Ensure that the DNS server is accessible, especially if the REDDOXX Appliance is located in a DMZ.
To continue the basic configuration, Click on the button NEXT. Cancel: Reject changes and exit the basic configuration.
Adding E-Mail Domains
Via the e-mail domains, you have the possibility to add all domains for which the REDDOXX Appliance is supposed to receive emails.
Illustration:
Basic configuration – e-mail domains
Enter all domains for which you want to receive emails.
Click on the button ADD.
The
entered e-mail domains are listed in the field e-mail domains.
Notice
Observe the correct spelling of the e-mail domains. The REDDOXX Appliance cannot receive any emails for other domains.
To continue the basic configuration, Click on
the button NEXT.
Back:
Goes back to the previous window.
Cancel:
Reject changes and exit the basic configuration.
Notice
In order to delete an added domain again, mark the corresponding entry with a mouse and delete it with the DEL button on your keyboard. This action cannot be undone.
Add Local Networks
Via the local networks, you can add all local networks for which the REDDOXX Appliance is supposed to function as e-mail relay. This way, the REDDOXX Appliance cannot be abused as open e-mail relay when emails are sent from the inside to the outside via the REDDOXX Appliance.

Illustration: Basic configuration – local networks
Enter the IP network which may send mails to the REDDOXX Appliance.
Enter the subnet mask. With the subnet
mask 255.255.255.255, you enter a single host (e.g.192.168.0.8).
Notice
Instead of an entire network, you can also state individual IP addresses, e.g. that of your mail server. Individual IP addresses must be masked with 255.255.255.255.
Click on the button ADD.
The
entered local networks are listed in the field Local Networks.
If you have several e-mail servers in various IP networks, please also add these networks or hosts.
To continue the basic configuration, Click on
the button NEXT.
Back:
Goes back to the previous window.
Cancel:
Reject changes and exit the basic configuration.
Notice
In order to delete an added network again, mark the corresponding entry with a mouse and delete it with the DEL button on your keyboard. This action cannot be undone.
Configuring E-Mail Forwarding
Via E-Mail Forwarding, you can state where the REDDOXX Appliance is supposed to forward the emails to.

Illustration: Basic configuration – e-mail forwarding
Outgoing
emails:
Enter
the FQDN (host name).
If
necessary, activate the option Forwarding
via DNS if the emails are
supposed to be delivered via DNS.
Activate the option Authentication required if the relay server demands authentication.
Enter the user name and password if you have activated this option in step 3.
Incoming
emails:
If necessary,
activate the option Forwarding
via DNS if the emails are
supposed to be delivered via DNS.
Enter an internal e-mail server at internal
e-mail server.
Notice
If you have several internal e-mail servers, you can configure these later per domain.
To continue the basic configuration, Click on
the button NEXT.
Back:
Goes back to the previous window.
Cancel:
Reject changes and exit the basic configuration.
Defining E-Mail Addresses
Here is where the e-mail address of the administrator and the REDDOXX Appliance are managed, which the REDDOXX Appliance requires for the forwarding of system messages. The REDDOXX Appliance uses the administrator's e-mail address to communicate with the administrator. The REDDOXX Appliance's e-mail address is used to communicate with the REDDOXX Portal.
Illustration:
Basic configuration – e-mail addresses
In the field Administrator address enter
the administrator's e-mail address.
The
administrator address must exist on one of your e-mail servers. At
this address, you receive messages concerning innovations (release
notes) and updates of the REDDOXX Appliance.
In the field REDDOXX address, enter the e-mail address of the REDDOXX Appliance.
Notice
The e-mail address of the REDDOXX Appliance is required for internal
operation and may not be used otherwise.
Make sure that this
e-mail address does not exist on your mail server and that it is
forwarded by possible upstream firewalls or relays.
To finish the basic configuration, Click on the
button FINISH.
Back:
Goes back to the previous window.
Cancel:
Reject changes and exit the basic configuration.
Information about the Administrator Console
This chapter explains the exact handling of the administrator console. The administrator console was developed to ease the handling of the REDDOXX Appliance. You can supplement or change all settings of the REDDOXX Appliance via the console at any time. Before you access the actual application window of the REDDOXX Appliance console, you have to log in.
Performing the Login
For safety reasons, the REDDOXX Appliance is only accessible via login. Therefore you have to authenticate yourself as follows with your user name and password:
Copy the content of
the REDDOXX CD onto your computer.
The
files may be copied to any directory of your choice.
Double-click on the file rdxadmin.exe.
The
login window opens.

Illustration: Login window
Select the corresponding hostname.
Enter your user name.
Enter your password.
Notice
The following standard values are set upon delivery of the REDDOXX
Appliance:
User
name: sf-admin and
password:
admin
In realm, select the option "local".
Select the desired language
in the selection list, which
you want to use to display your program.
The
selection contains the currently installed languages.
Click on the button LOGIN.
The
application window for the basic configuration is now active.
T



he
following application window contains the sections of the
administrator console numbered and named:
Illustration: Application window after login
Legend
Menu bar
Tree view
List view
Status view
Log view
The main menu consists of the sections File, View, Language, Appliance and Help.

Illustration: Main menu
In the title bar the console software version is showed. Please mind, that you always use the latest software version. Download under http://support.reddoxx.net.
For safety reasons, the REDDOXX Appliance is only accessible via login. Therefore you have to authenticate yourself with your user name and password.

Illustration: Menu File
Requirements: The administrator console (the program sf-admin.exe) must be started. There is no current connection to the system (logged out).
In the main menu File, click on Connect. The following dialog is displayed:
Illustration: Login window
Host name: Enter the host name to which you want to connect or select it from a list. The list contains the entries you already made so far.
User name: Enter sf-admin.
Enter the password.
Notice
The following standard values are set upon delivery of the REDDOXX
Appliance:
User
name: sf-admin and
password:
admin
Select the desired language
in the selection list, which
you want to use to display your program.
The
selection contains the currently installed languages.
Click on the button LOGIN.
The
application window for the basic configuration is now active.
If you want to login to another REDDOXX Appliance, you first have to disconnect the current connection.
In the menu bar, click on Disconnect.
Close the application (exit) or login again.
To exit the administrator console, select the menu point Exit. Any connections that are still established are closed as well.

Illustration: Menu View
With the option SEARCH, you show or hide the search field in the top right part of the window. This way, you can search the entries in all queues according to sender or receiver.
Requirement: The content of a queue or the archive list is displayed.

Illustration: Search entry field
Search term: Enter the criterion for which you want to search.
NOTICE
Per default the view is limited up to 1000 entries. Fill in a „@“ if you want to see all entries.
Search in: Select the desired field type in the selection list. You can select between "Sender" (pre-selection) and "Recipient".
Search: Search to start the search.
Via the option Log (also F7 key), you can turn the live log on or off. In deactivated mode, you therefore have more room for the above list view.
Via the option Status (also F8 key), you can turn the appliance status display on the bottom left of the window on and off. In deactivated mode, you therefore have more room for the above navigation tree.
Via "Statistic", you can create diagrams about the filter behavior of the REDDOXX Appliance, print and save them.
Requirement: Logs must be available.
In the menu bar, click on View.
In the selection list open the context menu with
a right-click
The
following view appears:

Illustration: Statistic context menu
ADD Series adds a new graph onto the diagram.
The
following view appears 
Make your desired selections
Add the desired statistic by Clicking on
OK.
Following view appears:

Illustration: Statistics chart
Right click on a graph to open the context menu.
Change Color of the selected graph
Remove the selected graph from the chart.
The Log Viewer lets you view logs. This corresponds to the same function as described in chapter 4.3.4, but you can also view logs that were already saved locally or logs of other REDDOXX Appliances (e.g. subsidiaries). To do so, open the dialog file and load the desired log file.
Here you define the appearance (layout) of your CISS portal page. If you wish to have different layouts for separate domains, you need to create multiple themes and then assign a domain to your prepared themes.

Illustration: CISS manager
In the tree, right-click on CISS themes.
In the selection list, click on Add theme and assign a name of your choice.
Select a desired layout for your CISS page. 5 different layouts are available.
Then select the individual areas to define the corresponding layout.
In order to integrate a logo, Click on the button LOAD in the Logo preview. The supported image formats are GIF and JPG.
Notice
Image size: 400px width. Larger images are automatically scaled down, smaller images are not enlarged.
In order to integrate a background image, Click on the button LOAD in Background image. The supported image formats are GIF and JPG.
Notice
You can constantly see a preview of your generated CISS page. To do so, Click on the button Preview.
Here you can add and configure images for use by CISS.
In the tree, click on your created theme and
then right-click on Images. Then click on Add image
and select the desired image.
The
following view appears:

Illustration: CISS manager - images
Select the grid size for generating the
interaction fields via the option Grid size.
Now define
the interaction fields by clicking on the desired image area.
NOTICE
Interactive fields are shaded. Clicking again on a shaded field cancels the interaction again.
To be able to configure instructions, you first have to add languages.
Here you can add and configure different languages for use by CISS.
In the CISS navigation tree, click on your created theme and then right-click on Languages. Then click on Add language in the selection list and select the desired language. The following view appears:

Illustration: CISS manager –
languages
For each language, you can now define separate text versions for the parameters "error page, thank you page, top text, back button and close window".
To define these texts, double-click on the
corresponding parameters (e.g. error page). The text editor is
displayed:

Illustration: CISS manager - languages - text editor
You can define your own texts in the text
editor.
NOTICE
You can obtain a selection of German and English sample texts from the REDDOXX Support Center at: http://support.reddoxx.net in the column REDDOXX Spamfinder – CISS - Text samples.
Here you can assign a theme to an e-mail domain, which is then active for the use of CISS.
Requirement: A local Internet domain must already be configured.
In the tree, click on your created theme and then right-click on Domains. Then click on Add domain in the selection list and select the desired domain.
The following view appears:

Illustration: CISS manager - domains
NOTICE
All e-mail domains entered in Domains are activated for use by CISS. However, in order for CISS to kick in, the CISS filter must be assigned for the respective filter profile.
Click OK to add the domain to the theme.
To save the entire CISS configuration, click on
Save.
With
a click on CANCEL,
you close the CISS Manager and cancel the configuration.
The cluster manager enables the setup of a failover cluster with 2 appliances. Within one failover cluster the active node additionally takes over the IP address on its network interface card. If, due to a malfunction, the active node fails, the secondary node will take over the failover IP address, thereby turning into the active node and staying accessible for the other network components, e.g. firewall and mail server, under the same IP address.
Functional Diagram

Illustration: Cluster functional diagram
INFORMATION
The heartbeat network gets installed using the two secondary LAN interfaces (LAN 2) of the appliances and a crossed patch cable. Both appliances are controlling with the help of a regular impulse (heartbeat) whether the other appliance is still working properly. If the primary appliance does not react anymore, the secondary appliance will assume all data resources and start the required services (engine and data base). In case of a failover or an appliance breakdown the administrator will be advised by an email.
Requirements
Two Reddoxx appliances of the same product line.
One Ethernet cross over cable.
A cluster license fitting to the product line (license for the operating of the cluster).
A cluster subscription license fitting to the product line (license for the cluster maintenance).
Restrictions
During the test period the cluster cannot be installed on virtual appliances.
Before operating the cluster, a virtual appliance must get licensed.
In bridge mode an operating of the cluster is not possible.
Preparation of the Appliances
Both appliances require a complete network setup.
During the installation of the cluster internet access is required for both appliances.
The data partition of the secondary appliance has to be as large or larger as the data partition of the primary appliance.
The password for the sf-admin has to be identical at both appliances.
You must have a time server configured on both Appliances.
Allow the IP addresses of both appliances on your firewall for outbound mail traffic.
Select Cluster Manager from the menu
View.
Following
dialog appears:

Illustration: Cluster connect
Primary Appliance:
The input field
Primary Appliance is preset with the hostname or IP
address used by the login.
Secondary Appliance:
Fill in the
hostname or the IP address of the secondary appliance you want to
build the cluster with. If there is an IP address preset in the
field primary appliance, the IP address of that field will be
used but without the last octet.
Click on Connect.
Following
dialog appears:

Illustration: Cluster Manager
Click on Create cluster.
Following
dialog appears:

Illustration: Create cluster
Failover IP-Address:
The failover IP
address is the common IP address the cluster is connected from the
internal network e.g. firewall and mail server.
Notice
After the cluster setup the primary appliance (node) is active. The active node additionally has assigned the failover IP address to its network interface card. If the primary node fails, the secondary node take over the failover IP address and starts all required services (Engine, Database). So the cluster is herby available still under the same common IP address as before, independent of which node currently is active. All data are synchronized permanently during normal operations and are secured on a transaction base.
Heartbeat
network
Node 1 IP:
Default: 192.168.250.1
Node 2 IP:
Default: 192.168.250.2
Notice
The heartbeat network is preset on defaults. Change the values if the
presets do not fit within your internal network environment.
Click on OK to continue.
Following
security warning appears:

Illustration:
Security warning dialog on create cluster
Confirm the security warning with “Yes”
to create the cluster now.
The cluster creation now
starts. Status messages of each single step are shown inside the
action log below. This process takes only some minutes.

Illustration: Log view during the cluster setup process
At the end of the cluster setup process
following message box returns the status of the process. Confirm
with OK.

Illustration: Status message after creating the cluster
Now the synchronizing of both appliances starts. This is indicated by the yellow cluster status. After successful synchronization the cluster status turns into green.
Notice
For the next login at the admin console the hostname or the IP address is replaced by the failover hostname or IP address. Therefore you can login independently from whether which appliance currently is active.
Now insert a cluster subscription license.
Notice
If the cluster is not available (e.g. offline) the status „Service
failure“ in indicated as red. At the end of the cluster
setup the appliance engine is restarted so the status also turns red
for a moment. Do not worry about this.
If on the cluster nodes is offline or has an operation failure the
cluster status is indicated as orange.
During the data synchronization after the cluster setup the cluster
is already operational, but not protected against appliance failures
(*). The cluster status is indicated as yellow.
After successful synchronization the cluster is fully operational and
prepared against a node failure (*). The cluster status is indicated
as green.
(*) protected against failures means,
that if one appliance fails, the other node take over the control and
continue operation. This does cot cover any other kind of failures
regarding to e.g. completely power loss inside the operation centre.
If case you want to put the control of the cluster to the passive cluster node (e.g. hardware maintenance) you can switch the cluster state of the cluster nodes. The current active node turns to passive, the current passive one to the active node.
Select Cluster Manager in the View menu.
Click on the button Takeover to transfer
the control to the other appliance cluster node.
Following
message box appears:

Illustration: Message box when initiating a Takeover
Select Cluster Manager in the View menu.
Click on „Leave cluster“.
Following
message box appears:

Illustration:
Security warning before releasing a cluster
Confirm the security message with Yes.
During the cluster release you can see status messages to the single process steps.
If
the cluster release is finished, the following message appears:

Illustration: Message box after releasing the cluster
Notice
After releasing the cluster both appliances have the same data set.
Therefore only one appliance should be used for continuing operation,
because otherwise emails can get sent twice.
That appliance you
want to continue with must be rebooted. The other appliance should be
powered off. Consider to reset this appliance to default settings
before shut down
Notice that the network settings of the appliance
have to be reset to your network requirements, so that the firewall
and the mail server can connect to it.
If a Wen eine Appliance aus dem Cluster nicht verfügbar ist (Status Node failure), kann das Cluster nicht geordnet aufgelöst werden. Um die verbleibende Appliance in den normalen Betriebsmodus zu versetzen, gehen Sie wie auch in Kapitel 6 beschrieben, vor.
Login to the appliance console.
Notice
Cluster release is not possible via a ssh console connection (e.g.
putty)!
Select „Cluster “ „Leave Cluster“
Confirm the security message with Yes.
Reboot the appliance.
With the setup of the cluster all licenses of the primary appliance are assigned to the cluster. If the cluster gets released later on, all licenses that have been added during cluster operation gets assigned to the primary appliance.
Notice
For a
cluster operation following licenses is required:
1 cluster
licenses to run a failover cluster.
1 cluster subscription license
to get updates in a failover cluster.
The diagnostic center gives the possibility to check the appliance for current or for upcoming problems. You can choose the full diagnostic check or a single diagnostic check.
Select Diagnostic center from the menu
View.
Following
dialog appears:
Illustration: Diagnostic center
Closes the diagnostic center dialog.
Starts a full diagnostic.
Following
dialog appears:
Illustration: Full diagnostics
Action
In the action log you can see each single diagnostic check.
Output
In the output log you can see detailed information of a specific diagnostic check.
Click
on an action in the action area
above.
You
will see information as follows for e.g.:

Illustration: Diagnostic status information
Start a single diagnostic:
Single diagnostics are grouped into
categories. You can run all diagnostic of a whole category or just a
single check.
Select a category out of the category list
Illustration: Diagnostic categories
Select
Run
all test in this category
or choose a single one.
Illustration: Selection of a manual diagnostic
At
the end of a diagnostic run you will see a message box as follows
which indicates, if the diagnostic run was successful (without
errors) or not . Refer to the detailed information in the action log
if you get an error status.

Illustration: Diagnostic Status
Notice
The
appliance performs a full diagnostic run each hour. In case of
detected problems the administrator will be noticed by an email.
At present, you can select between 4 different languages: English, German, Dutch and Italian.
In the menu LANGUAGE, select the desired language. All views are immediately displayed in the new language.

Illustration: Menu item "Language"
In the Appliance section, you can restart and turn the REDDOXX Appliance off, set the time and date as well as save and restore the configuration.

Illustration: Menu Appliance
You can comfortably restart the REDDOXX Appliance via the REDDOXX console.
Requirement: Login to the REDDOXX Appliance.
In the menu bar, click on Appliance.
In the selection list, choose the entry Restart. The REDDOXX is ready for operation again in approx. 1 minute.
You can comfortably turn the REDDOXX Appliance off via the REDDOXX console.
Requirement: Login to the REDDOXX Appliance.
In the menu bar, click on Appliance.
In the selection list, choose the entry Shutdown.
Here you can match the date and the time of the REDDOXX Appliance with the current settings of the computer.
Requirement: Right settings on the computer (BIOS).
In the menu bar, click on Appliance.
In the selection list, choose the entry Set date / time.
The HELP menu consists of the license information, Online Help, a link to the REDDOXX Support Center and the Start Remote Support.
Illustration: Menu Help
Adapting the License Information
Here you can manage the licenses for the REDDOXX Appliance.
Requirement: Purchase of the REDDOXX Appliance.
In the menu bar, click on Info.
In the selection list, choose the entry License
information.
The
following view appears:

Illustration: License Information - license summary
In the selection in the license summary, you obtain information about the licensee, the number of licenses and the expiration of the subscription. By clicking on Update license, the license summary is updated.
Customer Address
Here you can manage and update your address data.
Requirement: Purchase of the REDDOXX Appliance.
In the menu bar, click on Info.
In the selection list, choose the entry License information.
Click on the tab "Customer address"
The
following fields are displayed:

Illustration: License Information
- customer address
Fill in all fields properly and click on click
on “Select Reseller”.
Following dialog
appears:
Illustration:
License information – Select reseller
Select your reseller. You have to fill out 4 characters for minimum.
Click finally on „update address“.
CLOSE the window
License Numbers
This is where your REDDOXX licenses and subscriptions are managed.
Click on the tab "License numbers"
The
following fields are displayed:

You see an overview of all entered licenses with
activation and expiration information.
To enter a new license
number, enter the number of the purchased license in the field
License
number.
To register the entered license number on the REDDOXX Appliance, click on the button ADD license.
By pressing the online Help (F1) key your browser will be launched and the context sensitive help pages of the manual will be loaded.
If you have questions to the configuration of the appliance or if you have troubles with the appliance, you call open up a support request by selecting REDDOXX Support from the help menu. Then your browser launches and will b redirected to the following page:

Illustration: REDDOXX Support
In case of problems you can start the Reddoxx Remote Support Service to enable remote access to a Reddoxx Support agent. The appliance will establish a connection via TCP Port 80 to the Reddoxx Support Server. Over this connection the Reddoxx Support agent can log into your appliance to start further diagnostics.
Select from the menu Help
the option Start Remote Support.
Now
the Remote Support service starts and the following dialog appears.
Confirm with OK.

To Stop the Remote Support
Service, select from the menu Help
the option Stop Remote Support.
The
Remote Support Service now will be stopped. Confirm the dialog with
OK.

Open network settings
Requirements: The REDDOXX Appliance must be connected and in operation.
In the navigation tree, double-click on Appliance configuration.
In the tree, double-click on the branch Network settings.
Attention
You should make a backup before each change and archive this.
Also
see: "Options in the Menu Bar"
Making the Network Configuration
Via the General Configuration, you can set up the hostname and the DNS servers.
Requirement: Opening the Appliance Configuration
Click on the tab
"General"
The
following fields are displayed:

Illustration: General configuration of the REDDOXX Appliance
Hostname
- Hostname:
Enter any
name for the REDDOXX Appliance in the network.
The
standard value can be exchanged for any name.
DNS
Domain:
If applicable,
enter the name of the domain belonging to the REDDOXX Appliance.
DNS
– 1st DNS-Server:
Enter
the corresponding IP address of your network's DNS server.
Notice
This entry is mandatory! At least one DNS server must be
stated.
Ensure
that the DNS server is accessible, also if the REDDOXX Appliance is
operated in a DMZ.
DNS
– 2nd DNS-Server:
Enter
the IP address of another DNS server.
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the network Configuration.
Cancel:
Cancels the settings and closes the network Configuration.
Making the Network Configuration
You can set up the
primary network card via the network configuration. This
consists of an IP address and a network mask each. The second network
card is currently not yet supported.
Notice
The configuration of the second network interface is currently not supported.
Requirement: Opening the network configuration
Click on the tab
"Network"
The
following fields are displayed:

Illustration: Network configuration of the REDDOXX Appliance
LAN 1
IP
address:
Enter the IP
address of the REDDOXX Appliance.
The
standard values were taken over from the first settings.
Net
mask:
Enter the
respective network mask of the REDDOXX Appliance.
The
standard values were taken over from the first settings.
LAN 2
IP
address:
If
you want to use the appliance in a failover cluster, you need to set
the 2nd
LAN interface’s IP address.
Net
mask:
Enter the
respective network mask of the REDDOXX Appliance.
The
standard values were taken over from the first settings.
Bridge mode
Enable
Bridge mode:
Activate the checkbox if you want to drive the box in bridge
mode.
You can find a detailed documentation inside the manual
“Pop3 and Bridge mode configuration” in chapter 5.
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the network configuration.
Cancel:
Cancels the settings and closes the network configuration.
Default Gateway and Routing
You can set up the default gateway via the routing configuration.
Requirement: Opening the network configuration
Click on the tab "Routing".The following fields are displayed:

Illustration: Routing configuration of the REDDOXX Appliance
Default
gateway:
Enter the IP
address of the default gateway here.
If you want to add static routes, you can do so via the button ADD.

Illustration: Routing configuration of the REDDOXX Appliance
Enter a target network, the corresponding subnet mask and a corresponding gateway. Add route by clicking on OK.
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the network configuration.
Cancel:
Cancels the settings and closes the network configuration.
Making the Timeserver Configuration
Via the timeserver configuration, you can enter the timeservers and choose the applicable time zone via the selection list.
Requirement: Opening the network configuration
Click on the tab
"Timeserver"
The
following fields are displayed:

Illustration: Timeserver configuration of the REDDOXX Appliance
Timeserver
– 1st
Timeserver:
Enter the
name of the timeserver to be used.
Notice
This entry is mandatory! We recommend entering at least one timeserver that supports NTP (Network Time Protocol), as the correct time is important for the functioning of the REDDOXX Appliance. Make sure that the port 123 UDP on your firewall is opened.
Timeserver
– 2nd
and 3rd
Timeserver
If necessary,
repeat step 2.
Timezone
- Time zone:
Via the
selection list, select the corresponding time zone.
Ok:
Saves the settings and closes the network configuration.
Cancel:
Cancels the settings and closes the network configuration.
You can check your cluster settings here but you can’t make any changes here. Changes are only via the cluster manager possible.

Illustration:
Cluster Settings
Cluster enabled: shows if the cluster is setup and enabled
Primary node: Hostname of the primary appliance
Primary ip-address: IP address of the primary appliance
Secondary node: Hostname of the secondary appliance
Secondary ip-address: IP address of the secondary appliance
Failover ip-address: IP address of the cluster.
Click on OK or Cancel to close the dialog.
In the appliance
configuration there is the point bridge
policies. Here you can define rules to
bypass IP-based stations like PC or servers. That means, the internet
traffic of that specific station still goes through the appliance,
but leaves untouched.
.
Double-Click
on Bridge
Policies.
Following
dialog is displayed:

Illustration: Bridge Policies
Source: is a client inside the internal network
Destination: is the destination IP address
Action:
„Bypass“
– Mails are not collected by the REDDOXX appliance. The POP3
poll request is sent directly to the provider (Destination IP).
„Proxy“ – Mails are collected by
the appliance.
Notice
With
the policies you have the possibility to combine various rules. The
processing of the rules goes from top to bottom. As far as a rule
matches the condition, this rule will be applied. Further rules will
be ignored.
Modified rule settings gets applied only after
pressing the APPLY button
in the menu bar.
Opening the Settings
Requirements: The REDDOXX Appliance must be connected and in operation.
In the navigation tree, double-click on Appliance configuration.
In the tree, double-click on the branch Settings.
Making General Settings
Via the General Settings, you can enter and administer the hostname and the e-mail addresses of the REDDOXX Appliance. This way, the REDDOXX Appliance can send system messages to itself or the system administrator at any time. To let the Appliance load current updates for the fuzzy filter and current virus updates, it must be able to establish HTTP connections to the Internet. If a proxy server is supposed to be used for this purpose, you can also configure this here.
Requirement: Opening the Settings.
Click on the tab "General".The following fields are displayed:

Illustration: Settings – General
E-mail addresses
Appliance
address:
Enter the e-mail
address of the REDDOXX Appliance.
Notice
The e-mail address of the REDDOXX Appliance must be an e-mail address of a valid e-mail domain and also received by the REDDOXX Appliance. This e-mail address may not be used for other purposes.
Administrator
Address:
Enter the e-mail
address of the administrator. To this email address the
administrator receives messages von the appliance, e.g. when the
backup was not finished correctly.
HTTP-Proxy
Use HTTP proxy:
If there is no direct
internet connection in your network, you need to use a HTTP proxy.
Then activate the checkbox.
Proxy
address:
Enter
the name or IP address of your proxy server
that enables HTTP communication.
Proxy port:
Enter the TCP port of your
proxy server.
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the Appliance Configuration.
Cancel:
Cancels the settings and closes the Appliance Configuration.
SOCKS-Proxy
Use SOCKS-Proxy:
You also can use a
SOCKS-proxy, if there is no direct internet connection available.
Then activate the checkbox. A SOCKS proxy is protocol independent
and so more flexible.
Proxy
address:
Enter
the name or IP address of your SOCKS proxy server
that enables Internet communication.
Proxy port:
Enter the TCP port of your
SOCKS proxy server.
Proxy user:
Enter the username to
authenticate against your SOCKS proxy server, if authentication is
required.
Proxy password:
Enter the user’s
password for authentication against your SOCKS proxy server.
Making the Basic SMTP Settings
Adjustments for the hostname, the SMTP server and the SMTP client services.
Requirement: Opening the Settings.
Click on the tab
"SMTP"
The
following fields are displayed:

Illustration: Settings – SMTP
Common
Hostname:
Enter the corresponding
hostname which the REDDOXX Appliance uses to identify itself at the
beginning of the SMTP dialogue.
This
hostname consists of the hostname and the domain of the Appliance
Configuration.
Notice
Enter the hostname in FQDN format (Fully Qualified Domain Name). We urgently recommend using a host name which can be resolved via a reverse DNS query (PTR entry), if no smart host (mail relay) is used.
SMTP Server
TCP
Port:
If required, adapt
the TCP port for the SMTP connections of the REDDOXX Appliance.
The
default standard value is "25".
Enable
TLS:
If
activated, the appliance is able to receive encrypted transmissions
from other mail servers. On the beginning of a mail transmission the
appliance gets the decrypting key automatically from the mail
sending host.
Enable
SMTP-Auth:
If
enabled, mails that coming from the internet can be treated as
outbound mails if the connection to the appliance was authenticated
with a username and password. That means, a home office co-worker
can send mails via the company’s common mail server (this
appliance) but without being inside the company’s network,
via VPN.
SMTP-Auth
over TLS only:
If enabled, the appliance forces that the
SMTP-Auth connection (mentioned above) must be encrypted via
TLS for security reasons.
Max.
invalid Recipients:
The appliance disconnects the SMTP
transmission if a peer has tried to deliver to unknown repicients,
as many times as this value (threshold) is set. A “0”
value disables the function.
Notice
You must restart the SMTP-Server service to activate your changed settings.
SMTP Client
Enable TLS
if enabled, the appliance
tries to send the mail encrypted with TLS first. If the other side
do not understand TLS encryption, the appliances sends unencrypted.
Relay
host:
Enter the e-mail
relay for sending outbound emails, if you have to use one. Emails
then are not delivered directly but via this relay. Prefer direct
delivery if you can, but this requires a fixed IP address and a
corresponding PTR record in the DNS.
User
Name:
Enter the user
name to authenticate against the relay host..
Password:
Enter the corresponding
password.
Notice
Username and password must only be entered if authentication is required. Obtain the access data for login from your e-mail provider.Notice
You must restart the SMTP-Client service to activate your changed settings.
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the Appliance Configuration.
Cancel:
Cancels the settings and closes the Appliance Configuration.
Activate POP3 services
Click
on the tab "POP3".
Following
window appears:

Illustration – POP3
Pop3 Settings
Further detailed information to POP3 and Bridge-Mode you can find inside the brief introduction under http://support.reddoxx.net/downloads.php
Enable
POP3 Proxy:
Enable
the POP3 proxy service, if the REDDOXX appliance should answer to
POP3- requests from the internal network. The appliance listens on
TCP-Port 110.
Enable POP3 ProxyS (SSL):
Enable the Secure POP3 service, if the REDDOXX Appliance answers to secured POP3 requests from the internal network. The appliance listens on TCP-Port 995.
Making Limit Settings
Via the limit settings, you can set the maximum SMTP connections for incoming and outgoing emails. Additional options are timeouts for connection and e-mail sending as well as the maximum e-mail size. You can also set the maximum number of consoles, which may connect to the REDDOXX Appliance at the same time here.
Requirement: Opening the Settings.
Click on the tab
"Limits"
The
following fields are displayed:

Illustration: Settings - Limits
Notice
For the following settings, take over the respective valid settings in the standard value table as these depend on the variant of the REDDOXX Appliance you have purchased.
SMTP
- Max. Connections (incoming):
Set
the limit value of simultaneously incoming emails.
This value
defines how many incoming SMTP connections are managed and
maintained at the same time. Connections coming from the internal
network (trusted network) have no limitations anymore since version
1024.
SMTP
- Max. Connections (outgoing):
Set
the limit value of simultaneously outgoing emails.
This value
defines how many SMTP connections to other servers are managed and
maintained at the same time.
SMTP
– Connection Timeout (outgoing):
Set
the desired connection timeout for outgoing emails in seconds. This
time defines after how many seconds TCP communication without
response the connection is closed.
SMTP
– Timeout (outgoing):
Set
the desired timeout for outgoing emails. This time defines after how
many seconds outgoing SMTP communication without response the
connection is closed.
SMTP
– Timeout (incoming):
Set
the desired timeout for incoming emails in seconds. This time
defines after how many seconds incoming SMTP communication without
response the connection is closed.
SMTP
- Max. E-Mail Size (MB):
Set
the desired e-mail size. Because of that during the data
transmission a validation of the mail size cannot be done, the data
always gets transferred completely. After that, the size gets limit
proofed and then declined if the size limit has reached. Thereby the
sender gets a negative acknowledgement during the SMTP dialogue. The
email was not accepted.
Console
- Max. Connections:
Set
the maximum number of consoles that can connect simultaneously to
the REDDOXX Appliance. In this process, admin as well as user
connections are counted.
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the Appliance Configuration.
Cancel:
Cancels the settings and closes the Appliance Configuration.
Standard Value (Recommendation):
|
|
RX-50 |
RX-100 |
RX-250 |
RX-750 |
RX-2500 |
|
Max. connections (incoming): |
30 |
100 |
100 |
100 |
200 |
|
Max. connections (outgoing): |
50 |
150 |
150 |
150 |
200 |
|
Connection timeout (outgoing): |
30 Sec. |
30 Sec. |
30 Sec. |
30 Sec. |
30 Sec. |
|
Timeout (outgoing): |
180 Sec. |
180 Sec. |
180 Sec. |
180 Sec. |
180 Sec. |
|
Timeout (incoming) |
180 Sec. |
180 Sec. |
180 Sec. |
180 Sec. |
180 Sec. |
|
Max. e-mail size |
100 MB |
100 MB |
100 MB |
100 MB |
100 MB |
|
Max. console connections |
50 |
150 |
150 |
250 |
500 |
Attention
Standard values are already pre-defined in the REDDOXX Appliance. These standard values should not be changed. Only expert personnel or support may make changes here.
Making REDDOXX Appliance Settings via Queues
Via the queue settings, you can define the save and forwarding time of the outgoing queues, the CISS queues, the spam queues and the virus queues in days.
Requirement: Opening the Settings.
Click on the tab
"Queues"
The
following fields are displayed:

Illustration: Settings – Queues
Outgoing
Queue - Max. Delivery Time (Days):
Enter
the maximum delivery time of the emails in the outgoing queues in
days. During this time, the system attempts to send the mail. If the
mail server that is supposed to receive the mail is still not
available after this defined time, REDDOXX sends the sender a
corresponding message with SMTP error code and cancels the send
process.
CISS
- Max. Save Time (Days):
Enter
the maximum save time of the emails in the CISS queues in days.
If
a CISS prompt is not executed after a defined period, the mail is
deleted on the appliance and not delivered.
Spam
- Max. Save Time (Days):
Enter
the maximum save time of the emails in the spam queues in days.
If
the mail is not delivered manually until the expiration of the set
time, it is deleted.
Virus
- Max. Save Time (Days):
Enter
the maximum save time of the emails in the virus queues in days.
Queue
Report:
If this field is
activated, a queue report is generated each day at the defined
reporting time for each user whose spam or CISS queue has increased.
In the user console, the user can define whether this function is
desired and in which format this message is to be sent (html/text).
For additional configurations, change to the
next tab.
Ok:
Saves the settings and closes the Appliance Configuration.
Cancel:
Cancels the settings and closes the Appliance Configuration.
Notice
The stated standard values are our recommendations, which you may change at any time.
Check your entries from time to time and reduce the times if applicable.
Attention
After expiration of the set times, the emails are deleted
irrevocably from the respective queues.
The parameters set in
"Appliance Configuration – Timeserver" are decisive
here, above all the set time zone.
Via the Advanced Settings, you can configure the Validator, the diplay period and the dynamic blacklist filter..
Requirement: Opening the Settings.
Click on the tab
"Advanced"
The
following fields are displayed:

Illustration: Settings –
Advanced
Validator
Use
built-in profile:
If this
field is activated, the appliance uses the built-in profile, if a
filter profile was not (yet) assigned to the e-mail alias, or if
licenses are not (or no longer) available. For further details, see
chapter Filter Profiles 4.4.2.7
Max.
Threads:
This value
indicates how many validations aredo ne at the same time. The value
is permanently assigned and cannot be changed.
Default display period
Spamfinder
list:
This
value determines how many days the initial list of the spam queue
goes back into the past. The default value is 30 days. That means,
all entries of that queue from the last 30 days are shown. Choose
a lower value to accelerate the initial listing of a queue.
Use the search function to get listed entries behind that
limitation.
MailDepot
list:
This
value determines how many days the initial list of the maildepot
goes back into the past. The default value is 30 days. That means,
all entries of that queue from the last 30 days are shown. Choose
a lower value to accelerate the initial listing of a queue.
Use the search function to get listed entries behind that
limitation.
Dynamic IP-Blacklist
Enable
dynamic
IP-Blacklist:
If enabled, the email gets validated already
during the SMTP link connection, if the sending IP address is
blacklisted. Hereby all black list servers are used, which are
referenced in the RBL filter configuration. If the sending IP
address is on a black list, the connection will disconnect
immediately. The advantage of this function is, that in case of
massive spam attacks the appliance is not even more that under heavy
load as before. A requirement for this is, that the mails gets
delivered directly and not via your relay.
The
RBL black list queries are cached and viewable under „Blocked
IP Addresses“
(SMTP
Settings).
These entries are valid for one day.
Notice
For using the dynamic IP-Blacklist-Function a valid Spamfinder license is required. Detected spam is not queued. If this function is disabled, the mails still can be filtered by the RBL filter during the validation process.
Ok:
Saves the settings and closes the Appliance Configuration.
Cancel:
Cancels the settings and closes the Appliance Configuration.
Bounce Address Tag Validation
Another method to send spam is called bounce address spoofing. Hereby an email with a spoofed sending address (e.g. your address) is sent to a mail server with an unknown recipient. The mail server first takes over the mail and proofs the deliverability. If the recipient does not exist, the mails server bounces back the email. Due to that the sender had used your email address you will get this bounce mail which includes beside the error message the original spam.
The BATV-Function proofs an incoming email, if a corresponding email was sent out before. If not, the mail will not be accepted during the SMTP connection and also will not be queued.
Click
on the tab "BATV".
Following
window appears:

Illustration: Settings – BATV
Bounce Address tag Validation
Enable
BATV:
Activate
this checkbox if spoofed bounce mails have to be filtered. A
valid spamfinder license is required.
BATV Address exceptions:
If some local recipients do not get emails because they have been described as bounce mails accidentally, (e.g. newsletters oder mails from shop systems) exclude them here in the exception list. Enter that email address in the field and click on the button ADD. Delete this entry by marking it and then press the DEL-Key.
Ok:
Saves the settings and closes the Appliance Configuration. Changes
are effective immediately.
Cancel:
Cancels the settings and closes the Appliance Configuration.
Notice
For using the BATV function a
valid Spamfinder license is required. Detected mails are not queued
inside the spam queue.
Important!
Iit is required that all
outgoing mails are sent via the REDDOXX appliance.
In case of problems e.g. a failed backup or detected hardware failure the appliance can send an email to the administrator. You can configure here how the appliance should send that email notification.
Click on the tab
"Notification".
Following
window appears:

Illustration:
SMTP-Notification
SMTP Notification
Send
e-mail Notification:
Enable
this to activate sending notifications in case of problems. This
service is enabled by default.
SMTP
target host:
The
mail server the appliance sends the notification email to.
If you do not use a remote SMTP
server, the appliance will send a notification via its own email
engine. In case the appliance will have a problem with its own
engine, the notification fails.
SMTP
target Port:
The
mail server TCP port the appliance is connecting to the mail server.
Username:
The
user name the appliance authenticates at the mail server, if
required.
Password:
The
password for the user name above, if authentication is required.
Notice:
Especially when running a failover cluster you should activate the SMTP Notification service and provide a SMTP target host to get informed if a node fails.
The REDDOXX appliance supports system network monitoring based on the Simple Network Management Protocol (SNMP).
You can use any kind of monitoring tools unless it supports SNMP. For an example, the administrator can monitor the queue length of the incoming mails and if the value reaches a specified limit (say 500) the monitoring system sends an alert to the admin. Then the admin can for e.g. upgrade the hardware performance so that the mails are processed faster.
Click on the tab
"Monitoring".
Following
window appears:

Illustration: Monitoring with SNMP
SNMP
Enable SNMP Monitoring:
If
activated, you can collect SNMP based monitoring data from the
appliance.
SNMP community:
The authentication
string to allow access to the appliance for data collection.
System information
System location:
Some informational
data for the monitoring software, were this appliance is located.
System
contact:
Some
informational data for the monitoring software, who is responsible
for this appliance.
To monitor the REDDOXX appliance and watch for its values the administrator of the network monitoring system needs the Object-IDs.
The Root Object-ID for REDDOXX is 31581. The single messure point values (Keys) are addressed via the Object-IDs as listed in the following table.
|
Object-ID |
Key |
Description |
|
enterprises.31581.1.1.1 |
rdxSmtpServerConnectionsIn |
Reddoxx SMTP Server Inbound Connections |
|
enterprises.31581.1.1.2 |
rdxSmtpServerConnectionsOut |
Reddoxx SMTP Client Outbound Connections |
|
enterprises.31581.1.2.1 |
rdxSmtpServerMsgRecvIn |
Reddoxx Amount of inbound messages received |
|
enterprises.31581.1.2.2 |
rdxSmtpServerMsgRecvOut |
Reddoxx Amount of outbound messages received |
|
enterprises.31581.1.3.1 |
rdxSmtpServerBytesRecvIn |
Reddoxx Amount of bytes received inbound |
|
enterprises.31581.1.3.2 |
rdxSmtpServerBytesRecvOut |
Reddoxx Amount of bytes received outbound |
|
enterprises.31581.1.4 |
rdxSmtpServerActiveSessions |
Reddoxx Number of active SMTP connections |
|
enterprises.31581.2.1.1 |
rdxSmtpClientConnectionsIn |
Reddoxx Amount of inbound SMTP-Client connections |
|
enterprises.31581.2.1.2 |
rdxSmtpClientConnectionsOut |
Reddoxx Amount of outbound SMTP-Client connections |
|
enterprises.31581.2.2.1 |
rdxSmtpClientMsgSentIn |
Reddoxx Amount of inbound messages sent |
|
enterprises.31581.2.2.2 |
rdxSmtpClientMsgSentOut |
Reddoxx Amount of outbound messages sent |
|
enterprises.31581.2.3.1 |
rdxSmtpClientBytesSentIn |
Reddoxx Amount of bytes sent inbound |
|
enterprises.31581.2.3.2 |
rdxSmtpClientBytesSentOut |
Reddoxx Amount of bytes sent outbound |
|
enterprises.31581.2.4 |
rdxSmtpClientSessions |
Reddoxx Current number of outgoing SMTP connections |
|
enterprises.31581.2.5 |
rdxSmtpClientQueueLength |
Reddoxx Messages to be sent |
|
enterprises.31581.3.1 |
rdxValidatorSessions |
Reddoxx Validation Sessions |
|
enterprises.31581.3.2 |
rdxValidatorQueueLength |
Reddoxx Validation Queue Length |
|
enterprises.31581.4.1 |
rdxArchiveMsgCount |
Reddoxx Archived Messages |
|
enterprises.31581.10.1 |
rdxSpamfinderRecjects |
Reddoxx Rejected Messages |
|
enterprises.31581.10.2 |
rdxSpamfinderTagMessages |
Reddoxx Tagged Messages |
|
enterprises.31581.10.3 |
rdxSpamfinderCissQuarantine |
Reddoxx CISS Quarantined Messages |
|
enterprises.31581.10.4 |
rdxSpamfinderSpamQuarantine |
Reddoxx Quarantined Messages |
|
enterprises.31581.10.5 |
rdxSpamfinderSpamBounced |
Reddoxx Bounced Messages |
|
enterprises.31581.10.6 |
rdxSpamfinderVirusesDetected |
Reddoxx Viruses Detection |
|
enterprises.31581.10.100 |
rdxSpamfinderBatvHits |
Reddoxx BATV Filter Drops |
|
enterprises.31581.10.101 |
rdxSpamfinderAddedIpBlacklistEntries |
Reddoxx IP-Blacklist Entries |
|
enterprises.31581.10.102 |
rdxSpamfinderRecipientVerificationHits |
Reddoxx Rejected Recipient Addresses |
Reddoxx provides a MIB file on its Support Center download page. This MIB file can be imported into different kind of monitoring systems. This helps in saving time for configuring every single key.
Furthermore we provide a template for the monitoring system called ZABBIX. This template consists beside the declaration of the keys and object ids already some graphical components (graphs). All keys are configured with the community string „public“.
REDDOXX provides a demo monitoring system based on ZABBIX, which monitors the REDDOXX Demo-Appliance. The public access goes via the Demo Center, which is linked in the Support Center. Visit the following internet addresses in the table with your browser.
|
REDDOXX Support Center |
http://support.reddoxx.net/ |
|
REDDOXX Demo Center |
http://demo.exmall24.net/ |
|
REDDOXX System Monitoring |
http://zabbix.reddoxx.net:12080 |
The log files are saved for a specific period of time.
Click on the tab
"Log".
Following
window appears:

Illustration:
Log options
Log options
Log
file retention time:
Amount
of days the log files will reside at the appliance before they will
be deleted.
Backup
before deletion:
With
this option you can force that the log files must have been backed
up before they will be deleted. The appliance will use the same
remote share as used in the common backup
Click on OK to save the settings and close the dialog.
Creating new Internet Domains
Via the Local Internet Domains, you can create new internal e-mail domains for which the REDDOXX Appliance is to receive emails.
Requirements: Login on the administrator console of the REDDOXX Appliance
In the tree view at SMTP Configuration select Local Internet domains.
Right-click in the list view.
In the selection list, choose the entry Add.
Click on the tab "Local Internet
domain"
The
following fields are displayed:

Illustration: Local Internet Domains
Settings
- Domain:
Enter the
desired Domain
for
that you want to receive emails.
Settings - Activate anti-spoofing:
Here you can activate or deactivate AntiSpoofing for the respective domain.
Notice
To activate AntiSpoofing, the AntiSpoofing filter must be additionally allocated to the respective filter profiles. The function principle and how to edit filters is described in the chapter Filter profiles.
REDDOXX
Mail Depot – Deactivating archiving:
If
this field is set, no emails are archived in the MailDepot.
For additional configurations, change to the
next tab. LDAP
Ok:
Saves the settings and closes the Appliance Configuration.
Cancel:
Cancels the settings and closes the Appliance Configuration.
LDAP Settings
One of the most essential parts of the REDDOXX filter technology is the recipient check (RVC = Recipient Verify Check). Here you can set whether emails are only sent to existing recipient addresses or rejected.
For the authentication method, you can select between a company-wide directory service and the local database of the REDDOXX Appliance.
Requirements: Select local Internet domains and double-click on the domain to be configured.
Click on the tab
"LDAP"
The
following fields are displayed:

Illustration: Local Internet domains - LDAP
LDAP settings
LDAP
server:
Enter the IP
address of the LDAP server.
Notice
In addition to the IP address, you can also state a port separated by a colon (example: 192.168.0.3:3268). If the LDAP server also has a GLOBAL CATALOG server (e.g. Microsoft Domain Controller), we recommend stating this as preference because it responds up to 10 x faster. The default for the Global Catalog is TCP port 3268.
LDAP
type:
Enter the LDAP
type. Available for selection are: Active Directory, Exchange
5.5, Lotus Notes Domino and OpenLDAP.
LDAP
Basis:
Enter the LDAP
basis. Example: dc=company, dc=com
LDAP
user:
Enter the user in
UPN format for authentication on the LDAP server.
LDAP
password:
Enter the
password for authentication on the LDAP server.
Recipient Check
Activate
Recipient Authentication:
If
this field is activated, the e-mail addresses are checked according
to the configured LDAP interface or the locally entered e-mail
addresses. This way, the REDDOXX Appliance only accepts mails that
are listed in the respective directory (Active Directory, Lotus
Domino, etc.) or locally.
Notice
After the recipient check was activated, the service "SMTP server" must be restarted on the REDDOXX Appliance. The service is located in the directory tree under "Appliance administration".
Further information about the LDAP configuration is available at the REDDOXX Support Center at http://support.reddoxx.net in the section MANUALS.
Test
method:
You can select
either LDAP or LOCAL as test method.
Autocreate user:
Autocreate
user:
If
this field is activated, users are automatically created upon the
first receipt of an e-mail. Here the system first checks whether a
user is available in LDAP for the e-mail address of the recipient.
If this user exists in the LDAP, it is automatically created on the
Appliance with all assigned e-mail addresses. Each e-mail address
automatically receives the default filter profile in this process.
Realm:
Select
the realm to be used for user authentication. You define the realm
in the user administration at "Login configuration".
Address
collect user:
Click
on the blue field named „disabled“.
Following
dialogue appears:

Illustration: Local Internet domains – User address collection
Disable
address collection:
Empty
the checkbox and the selection box „User“ will be
released.
User:
Select a user from the selection list to whom you want assign all email aliases, which are not assigned to somebody right now. Especially this is helpful for all public folders and distribution list addresses. Now on all incoming Emails to a public folder address this email alias will be assigned to the selected user. After that the filter profile will be assigned to that email alias and the email will be validated. The selected user has access to his queues and can maintain the filtered mails.
Ok:
Saves the settings and closes the configuration.
Cancel:
Cancels the settings and closes the configuration.
CISS Signature
This optional signature is attached to the automatic e-mail, which the REDDOXX Appliance sends for notification. This signature must be entered separately for each domain.
Requirements: Select local Internet domains and double-click on the domain to be configured.
Click on the tab
"CISS"
The
following fields are displayed:

Illustration: Local Internet domains - CISS
Enter any domain-specific signature.
This
optional signature is attached to the message text which the REDDOXX
Appliance sends to the sender in case of a CISS challenge. It can be
entered separately for each domain.
Notice
Also see: For further information about automatically generated emails, please refer to the chapter "Notifications".
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Editing Local Internet Domains
Proceed as follows to edit an existing Internet domain.
Requirements: Internet domain is available in the list view.
In the tree view at SMTP Configuration select Local Internet domains.
Double-click on the
domain to be edited.
The
configuration window opens.
Make the desired changes.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Delete Local Internet Domain
Proceed as follows to delete an existing Internet domain.
Requirements: Internet domain is available in the list view.
In the tree view at SMTP Configuration select Local Internet domains.
Right-click on the list entry to be deleted.
In the selection list, choose the entry Delete.
Confirm the
prompting message with Yes
to delete the Internet domain.
No:
Realm is not deleted.
* Notice – Information about Recipient Authentication
With the recipient authentication, the REDDOXX Appliance tries to determine whether the recipient of the mail is being serviced by the internal e-mail server, already before forwarding the mail.
At present, the following e-mail systems are supported for this function:
Microsoft Exchange 5.5, Microsoft Exchange 2000, Microsoft Exchange 2003, Lotus Notes Domino Server
Configuration:
|
Backend type |
Exchange 5.5 |
Exchange 2000 and 2003 |
Lotus Notes |
OpenLDAP |
|
Test method |
LDAP |
LDAP |
LDAP |
LDAP |
|
LDAP Server |
IP/hostname of the exchange server |
IP/hostname of a domain controller |
IP/hostname of a domain controller |
IP/hostname of a domain controller |
|
LDAP type |
Exchange 5.5 |
Active Directory |
Lotus Domino |
OpenLDAP |
|
LDAP basis |
|
dc=company, dc=com (Example) |
|
dc=company,dc=com (example) |
|
LDAP user |
|
UPN of the LDAP user |
|
|
|
LDAP password |
|
Password of the LDAP user |
|
|
UPN = User Principal Name
e.g.
ldap-proxy@company.com
The user is used for the Active Directory or Lotus Domino query and must be authorized to read the attributes of the e-mail address.
Important
Exchange 5.5
Neither the basis nor the user are entered here
(anonymous login).
E-mail addresses must be published in the
address book.
Creating new Local Networks
Via the local networks you define from which host or networks emails may be sent via the REDDOXX Appliance.
Requirements: Login on the administrator console of the REDDOXX Appliance
In the tree view at SMTP Configuration select Local Networks.
Right-click in the list view.
In the selection list, choose the entry New.
The
following fields are displayed:

Illustration: Local networks – local network
Enter the local network or a single host.
Single hosts, e.g. the internal mail server, require the mask 255.255.255.255.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Notice
If there is a mail relay or a firewall with an SMTP server service or a POP3 collector service before your REDDOXX Appliance, which receives the emails first, this may NOT be listed in the local networks.
Edit Local Networks
Proceed as follows to edit existing networks.
Requirements: Entries are available in the list view.
In the tree view at SMTP Configuration select Local Networks.
Double-click on the
network to be edited.
The
configuration window opens.
Make the desired changes.
Click on OK to save
the configuration and exit.
Cancel:
Reject changes and exit the configuration.
Deleting local networks
Proceed as follows to delete existing networks.
Requirements: Networks are available in the list view.
In the tree view at SMTP Configuration select Local Networks.
Right-click on the list entry to be deleted.
In the selection list, choose the entry Delete.
Confirm the
prompting message with Yes
to delete the profile.
No:
Profile is not deleted.
Notice
Changes
to the local networks require the restart of the SMPT server
service.
The restart of a service is described in this document in
Appliance Administration/Services.
Creating new E-Mail Transport
Via the e-mail transport, you can define to e-mail server the emails of the registered domain are to be forwarded.
Requirements: Login on the administrator console of the REDDOXX Appliance
In the tree view at SMTP Configuration select E-Mail Transport.
Right-click in the list view.
In the selection list, choose the entry New.
The
following fields are displayed:

Illustration: E-mail transport
Enter the desired Domain.
Enter the corresponding target server.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Notice
If the domain of an e-mail is not registered here, the target server is determined via a DNS lookup on the DNS server entered in the configuration.
Edit E-Mail Transport
Proceed as follows to edit existing e-mail transports.
Requirements: E-mail transport is available in the list view.
In the tree view at SMTP Configuration select E-Mail Transport.
Double- the e-mail
transport to be edited.
The
configuration window opens.
Make the desired changes.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Delete E-Mail Transport
Proceed as follows to delete existing networks.
Requirements: E-mail transports are available in the list view.
In the tree view at SMTP Configuration select E-Mail Transport.
Right-click on the list entry to be deleted.
In the selection list, choose the entry Delete.
Confirm the
prompting message with Yes
to delete the profile.
No:
Profile is not deleted.
If a sending mail server is on a black list, but you still want to receive mails from that address, you can add its IP address.
Add an allowed IP Address
Choose from the navigation tree view under SMTP Configuration – Allowed IP-Addresses.
Click in the list view the right mouse.
Choose „ADD“
from the context menu
Following
dialogue appears:

Illustration: Allowed IP address
Enter the network address or a single IP address, which you want to white list
Enter the corresponding subnet mask.
Enter a date until this entry is valid. After that date this entry will be ignored.
Enter a describing reason optionally.
Ok:
save the entry and exit.
Cancel:
Reject changes and exit the configuration.
Notice
If the dynamic IP Blacklist function is enabled, all allowed IP addresses which matches the sending IP address gets deleted. To avoid this, you must disable the dynamic IP Blacklist function, delete the IP address from the „Blocked IP Addresses list, add the IP address under Allowed IP Addresses and restart the SMTP server.
To explicitly prohibit the establishment of SMTP connections for IP addresses or complete network sections, you can enter add manually entries here. Furthermore, if the dynamic IP Blacklist function is enabled, all blacklisted mail server IP addresses gets listed here. These automatically inserted entries are valid for one day.
Creating blocked IP Addresses
Requirements: Login on the administrator console of the REDDOXX Appliance
In the tree view, select SMTP configuration - Blocked IP addresses.
Right-click in the list view.
In the selection list, choose the entry Add.
The
following fields are displayed:

Illustration: Blocked IP address
Enter the network to be blocked.
Enter the corresponding subnet mask.
Optionally, you can enter the reason for blocking in the field "Description".
Ok
to save the configuration and exit.
Cancel:
Reject changes and exit the configuration.
Backup Information
The backup function offers the possibility to save the complete data of the appliance automatically. In this process, all queues and configurations and the whole operating system of the REDDOXX Appliance are backed up.
Setting the Network Permission
Via the permission, you can state the network path and its parameters in which the backup is supposed to be saved.
Requirement: Login on the administrator console of the REDDOXX Appliance
In the tree view, select Backup and restore – Backup settings.
Right-click on "Backup settings"
In the selection list, choose the entry
Edit.
The following fields are displayed:

Illustration: Backup configuration – permission
Network share
Share:
Enter the UNC path to
your share where your backups will be stored.
Notice
The path is stated in UNC (Uniform Naming Convention) format: \\servername\foldername
You may not state any subdirectories.
The backup may not be saved
together with another directory (e.g. Archive).
Username:
Enter the user name to
authenticate against the share.
Password:
Enter the password.
The
password may not be longer than 16 characters!
Domain:
Enter the name of the domain
if applicable.
Options
Do not backup log files:
If
activated, the log file will not be included by the backups.
Setting a Schedule
Here you can enter the weekdays, the time at which the backup is supposed to be started and the name of the backup file. The backup is only saved at the stated time in the previously configured UNC path if the checkbox for the weekday is activated.
Requirement: Login on the administrator console of the REDDOXX Appliance
In the tree view, select Backup and restore – Backup settings.
Right-click on "Backup settings"
In the selection list, choose the entry Edit.
Click on the tab
"Schedule"
The
following fields are displayed:

Illustration: Backup configuration – schedule
Notice
You can test the connection to the server permission by clicking on BACKUPS. No error message may appear in the log view in this case.
The table lists the backups written so far. To restore, you must login to the appliance console.
Notice
Since Appliance version 1021, the restore can only be performed via the Appliance Console. Also see chapter 6.2 – Appliance console - backup and restore
Click on the navigation tree on BACKUP and RESTORE – BACKUPS. All available backup sets are listed. To restore a backup continue as described in chapter 6.2.
If no backup sets are shown and a red error
message is displayed in the live log window, check the configuration
settings.

Illustration: Backup and restore – restore
Information about Queues
In the queues, the emails wait for further processing by the REDDOXX Appliance.
Mode of Function
Also see: "Information about the services in chapter Services 4.3.7".
The Incoming and Outgoing Messages are the basic queues of the REDDOXX Appliance.
Emails accepted by the SMTP server of the REDDOXX Appliance sent internally or externally are temporarily saved in the Incoming Messages queue. Here the REDDOXX Appliance checks the emails and places them in the queues Spam, CISS, Virus or Outgoing Messages, depending on the result of the check.
You can look for emails manually in this queue and delete them. The list view shows the ID, the time received, the sender and the recipient, the size of the emails, the forwarding time as well as the result of the emails. Sorting via e-mail attributes is also possible here.
All emails sent internally or externally by the SMTP client of the REDDOXX Appliance are placed in the queue Outgoing Messages.
For further information, see Incoming queues.
Searching for Emails
You can search for emails in the respective queues.
Restrictions: None, searching for emails is possible in all queues.
Select with a double- in the tree view Mail queues or Spamfinder queues.
Select the desired queue.
In the menu view,
click on the icon with the magnifying glass.
![]()
The
following fields are displayed above the list:
In Search term, Sender and Recipient enter the data you know.
Sorting via e-mail attributes is also possible here. To do so, click on the column header. Another reverses the direction.
Search to start the search.
Deleting E-Mails
You can delete emails in the respective queues.
Restrictions: None. Deleting emails is possible in all queues.
In the tree view, select Queues with a double-.
Select the desired queue.
Right-click on the e-mail to be deleted.
In the selection list, choose the entry Delete.
Confirm the
prompting message with Yes
to delete the profile.
No:
Profile is not deleted.
Information about User Administration
In the user administration, you can manage users, local e-mail addresses, the login configuration as well as groups and policies.

In the column USER, you can add, edit, delete, search and import users, as well as assign or revoke licenses and change the password.
The list view offers the following data at a glance:
List with names of the created users
Primary e-mail address
Realm
Spamfinder licenses
MailDepot licenses

Illustration: User administration - users
Adding Users
In the selection list, choose the entry Add.
The
following fields are displayed:

Illustration: User Administration – User data
Enter the desired user name.
Enter a password.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Edit Users
Proceed as follows to import an existing user.
Double-click on the
user to be edited.
The
configuration window opens.
Make the desired changes.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Delete Users
Proceed as follows to delete an existing user.
Right-click on the user to be deleted.
In the selection list, choose the entry Delete.
Confirm the prompt with Yes to delete the selected user. No: User is not deleted.
Adjusting the Password
To change the password of a user do the following steps.
Right-click on a user from the selection list.
Choose
the option: Set
Password.
The
following windows appears:
Illustration: User administration – Adjusting the Password
Insert the new password.
Confirm the new password.
Click on OK. The new password is set and the dialogue is closed. Select cancel if you do not wish to change the password.
Assign License
To assign a license to a user, do the following:
Mark in the selection list one or more user, click right and choose „Assign License“. The following window appears:

Illustration: User administration – Assign License
Select from the drop down list the option „Spamfinder license” or „Archive license“and click OK. The license is assigned and the window gets closed. This change is immediately effective without a restart.
Remove License
To remove a license from a user, do the same steps as before, but select in the context menu “remove license”. You can also use multi user selection.
Notice
Licenses get automatically assigned if the Spamfinder or the MailDepot is used inside the user console. Since version 1021 all licenses gets validated. If licenses have been assigned versions before, it may happen that you run out of valid licenses after a firmware version update. You will get an error message showing „Invalid license count“or „no valid license“. (See also the FAQ). Here you can remove already assigned licenses.
Import User
Proceed as follows to import a user from a list.
Right-click in the list view.
In the selection
list, choose the entry User import.
The following window
appears:
Illustration:
User administration –
user import
In the menu Import, select the option Read user from file.
Select the import file and click on Open. Then the following list appears.

Illustration: User administration – user import - Import list
Notice
The import file must have the following structure:
User name,password,realm,e-mail address1,e-mail addressN …
If
you do not see any user on the list, check out this constrains:
- Fields must be separated by a comma.
- All fields must not be empty. (Even not the password!).
- User must be unique.
In the menu Import,
select save user.
The following dialog
appears:
Illustration:
User administration – user import - filter selection
Select the realm and the profile to be used for the users to be imported.
Once the users were successfully imported, you can close the window. The users appear in the list view.
Groups are required to control user policies. One or several users are assigned to a group.
In the list view, you see the columns Group name and Description. You can add, edit and delete groups.

Illustration: User administration – groups
Adding Groups
In the selection list, choose the entry Add.
The
following dialog appears:

Illustration: User administration – add groups
Enter a group name.
Enter a description.
Click on ADD to assign
users to this group.
The
following dialog appears:
Illustration: User administration – add users to groups
Select one or several users from the list.
Click on OK to apply the user group assignment.
Now Click on OK to establish the group.
Edit Group
Double-click on the group to be edited.
Make the desired changes.
Click on OK.
Delete Group
Right-click on the group to be deleted.
In the selection list, choose the entry Delete.
Confirm the prompt with Yes to delete the selected group. No: The group is not deleted.
E-mail aliases are assigned to a user. You can add, edit or delete e-mail aliases, change the filter profile and deactivate archiving for several e-mail aliases at the same time.
In the list view, you see the columns E-mail address, filter profile, user and disable archiving.

Illustration: User administration - e-mail aliases
Adding E-mail
Aliases
In the selection list, choose the entry Add.
The
following fields are displayed:

Illustration: User administration - add e-mail alias
Enter the desired e-mail address.
Select the user allowed to manage this address.
Select the desired filter profile.
activate the checkbox Disable archiving if you want to avoid archiving those Emails
Now Click on OK to create the e-mail alias.
Editing E-mail
Aliases
Double- the e-mail address to be edited.
The following dialog appears:

Illustration: User Administration - E-mail address
User: You can assign another user to the alias.
Profile: Choose another profile if necessary.
Disable archiving: enable this checkbox if all Emails to this alias are not archived
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Deleting E-mail Aliases
Right-click on the e-mail alias to be deleted.
In the selection list, choose the entry Delete.
Confirm the prompting message with Yes to delete the selected e-mail address. No: The e-mail alias is not deleted.
Changing Filter Profiles
Mark all e-mail addresses for which you want to change the filter profile simultaneously.
Click on the list
selection (right). The following dialog opens:
Illustration: User administration – changing filter profiles
Select the desired filter profile.
OK: All previously selected e-mail aliases receive the newly entered filter profile.
Create certificates
Requirement: The REDDOXX CA Root-Certificate must exist.
Mark all email aliases for which you want to create a certificate.
Right-click
on the selection.
Following context
menu is displayed:
Choose „Create certificate“. You can watch the live log viewer for whom a certificate was created. Already existing certificates gets overwritten.

The Realm defines, which user database is used to authenticate the users. You can define several realms to enable users to login from different systems.
The standard realm "local" uses the local user database of the REDDOXX Appliance. It cannot be changed or deleted.
You can add, edit and delete realms.
In the list view, you see the columns Name and Authentication type.

Illustration: User administration – realm
Creating a new Realm

Illustration: User Administration - Realm
Enter the realm name.
Via the selection list, select the authentication type. The authentication type "local" refers to the local user database of the REDDOXX Appliance.
Enter the authentication
server.
The following are
supported: local, Windows2000, Windows2003, Netware5, Netware6
Active Directory, Lotus Domino, and OpenLDAP.
Enter the TCP port. The default port for LDAP is 389. You must enter a valid value here.
If desired, activate the option Secure transmission SSL. Please note that the default port for LDAP via SSL is 636.
Enter the active directory domain.
Enter the BaseDN.
Importing
e-mail addresses
If
necessary, activate the option Import e-mail addresses in
order to match the e-mail addresses for the user with the
authentication server at each login.
Setting
primary e-mail addresses
If
necessary, activate the option Set primary address in order
to match the primary e-mail addresses for the user with the
authentication server at each login.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Edit Realm
Double- Click on
the REALM to be edited.
The
configuration window opens.
Make the desired changes.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Delete Realm
Right-click on the realm to be deleted.
In the selection list, choose the entry Delete.
Confirm the prompt with Yes to delete the selected realm. No: Realm is not deleted.
Notice – Information about Realms
The Realm defines, which user database is used to authenticate the users.
The following table indicates the supported systems
and the respective function scope:
|
LDAP Server |
User Authentication |
Recipient Check |
User Auto Creation |
E-mail Address Import |
|
Microsoft Active Directory with Exchange 2000+ |
Yes |
yes |
yes |
yes |
|
Exchange 5.5 |
No |
yes |
no |
no |
|
Lotus Notes Domino 6+ |
Yes |
yes² |
yes |
yes² |
|
Novell eDirectory |
Yes |
no |
no |
no |
|
OpenLDAP |
Yes |
yes |
yes |
yes |
|
² The following restrictions apply for Lotus Notes Domino: |
||||
|
Only the following e-mail addresses are rated as valid: - Internet address The stated addresses must be clear in Lotus Domino! Double entries lead to the rejection of the mail! With Shortname/UserID, you can skip the Internet domain. Then all Internet domains defined in the Domino server are accepted. When importing during user login, at first only the Internet address is created as e-mail alias in the REDDOXX Appliance. The additional e-mail addresses are then generated upon e-mail receipt. |
||||
Configuration:
|
|
Windows 2000 |
Windows 2003 |
Netware 5.x |
Netware 6.x |
|
Authentication type |
Windows 2000 |
Windows 2003 |
Netware 5 |
Netware 6 |
|
Authentication server |
IP/hostname of a Windows domain controller |
IP/hostname of a Netware server with LDAP service |
||
|
TCP port |
TCP port of the LDAP service, standard: 389 OR for Secure LDAP: 636 |
|||
|
Secure transmission |
Activate Secure LDAP here if your system supports Secure LDAP. |
|||
|
Active Directory Domain |
AD domain e.g. company.com |
Not required |
||
|
BaseDN |
dc=company, dc=com |
e.g. o=context |
||
|
|
Lotus Domino |
OpenLDAP |
|
Authentication type |
Windows 2000 |
Windows 2003 |
|
Authentication server |
IP/hostname of the server with LDAP service |
|
|
TCP port |
389 / SecureLDAP 636 |
|
|
Secure transmission |
Activate Secure LDAP here if your system supports Secure LDAP. |
|
|
Active Directory Domain |
|
|
|
BaseDN |
|
o=REDDOXX,dc=company, dc=com |
Notice
For LDAP linkup to Novell Netware, it must be possible to read the following user attributes with an anonymous LDAP bind: dn, cn, objectClass.
Further LDAP settings are available at the REDDOXX Support Center at http://support.reddoxx.net in the column Download Center/Build1020.

Illustration: User administration – policies
Function Overview and Terminology
The policies help you to create rules that define the function scope of the user console. Rules are always applies on groups. This is why you must have already assigned users to groups (see chapter 4.3.2.2).
The policies define whether select functions are allowed or prohibited for one or several groups.
Examples:
- Add/delete white list entries
- Delete emails from queues
A policy contains so-called rule sets, a summary of individual functions to an umbrella term.
Rule Sets
The following rule sets are available:
- General rules
- Spamfinder rules
- Spamfinder filter list rules
- MailDepot rules
- MailSealer rules
- Deputy groups
A rule set can have 3 different statuses:
Not configured
Deactivated
Activated
To 1.) This set of rules is not evaluated. It is ignored in this policy. The status of the individual functions remain unchanged.
To 2.) All functions of this rule set are deactivated. The following policies are no longer considered for this rule set.
To 3.) The functions of the rule set are considered individually. The following policies are no longer considered for this rule set.
Operation Sequence
If there are no policies yet or if all rule sets are not configured, the default of the options applies initially and no deputies are defined.
When a user logs on to the user console, all available policies are processed in sequence from top to bottom.
If a user is included in the group that was assigned to the policy, the rule set is no longer considered on the following policies, unless the rule set previously had the status not configured.
You can set the sequence of the policies via the context menu (higher, lower).
Configuration of the Rule Sets
Open the window for
processing the configuration by right-clicking on a policy in the
tree menu. The following window appears:
The following window
appears:

Illustration: Policy configuration
Select the desired rules set and activate it.
Select the option you wish to activate.
Group Assignment
Assign this policy to a group.
Notice
Policies only always apply for the users contained in the user groups stated here.

Illustration: Policy configuration
The checkbox Apply
policy to all users assigns this policy to all users. This omits
the configuration and administration of a group containing all
users.
Input Section Apply Policy to:
ADD adds a group
from a group selection list (see chapter 4.3.2.2).
The
rule set of this policy is applied to users contained in this group.
DELETE removes a
marked group from this policy.
Input Section Reject Policy to:
ADD adds a group to the
group exemption list.
The rule set of this policy is NOT applied
to users contained in this group.
Click on OK to save the settings.
Notice
Example: A rule set of a policy applies to all users (Apply policy to all users) with the exception of the group of administrators (reject Policy for).
Deputies
A peculiarity of the rule sets is the deputy group rule set.
Here, the administrator can assign deputies for users on holiday, for example. This gives the deputy access to the emails of the user he is supposed to substitute.
In the rule set Deputy groups, you define, which e-mail addresses can be deputized.
Notice
Deputy groups merely serve for clarity and are not connected to the user groups.
In the user group assignment of the policy, you define who may represent this e-mail address (deputy groups).
Configuration of the Deputy
Groups

Illustration: Deputy Configuration
Right-click on the deputy groups.
Select Add deputy group.
Assign a name to the new deputy group.
With a right mouse click on the new deputy group, you can:
3.1 Delete deputy group again.
3.2 Renaming the deputy group.
3.3 Adding a deputy e-mail address.
By right-clicking on the e-mail address, you can delete it from the group again.
Notice - Exception to other Rule Sets
The list of all e-mail addresses a user may represent is compiled from ALL policies for the user group the user is assigned to.
Information about Notifications
Via Notifications, you can edit the standard texts of the emails sent in the respective situation.
The following standard texts can be configured:
CISS
Address verification
Virus warning to the administrator
Virus warning to the recipient
Virus warning to the sender
Edit CISS
Notifications
With CISS notifications, you can adapt the language, the subject and the content of the e-mail.
Restrictions: None.
Select Messages in the tree view.
In the list view, right-click on 'CISS'.
In the selection
list, choose the entry Edit.
The
following fields are displayed:

Illustration: CISS Message
Via the selection list, select the desired
language.
The
standard setting contains the e-mail text in German and English.
Activate the option Field to activate the language.
Change the e-mail at wish.
Notice
The texts with the percent signs are wildcards and may not be changed or deleted.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
CISS Message Wildcards:
|
Wildcard |
Explanation |
|
%SUBJECT% |
Subject of the received e-mail |
|
%CHALLENGE_URL% |
URL to the REDDOXX portal |
Edit Messages for Address Verification
With address verification messages, you can adapt the subject and the content of the e-mail.
Restrictions: None.
Select Messages in the tree view.
In the list view, right-click on 'Address Verification'.
In the selection
list, choose the entry Edit.
The
following fields are displayed:

Illustration: Message for address verification
Change the e-mail at wish.
Notice
The texts in percent signs are wildcards.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Wildcards for Address Verification Messages:
|
Wildcard |
Explanation |
|
%VerifyMail% |
E-mail address to be verified |
|
%VerifyID% |
ID (number) that has to be entered for verification of the e-mail address. |
Edit Virus Alarm Messages
With virus alarm messages, you can adapt the subject and the content of the e-mail. You can send these messages to the administrator, the recipient and the sender.
Restrictions: None.
Select Messages in the tree view.
In the list view, right-click on 'Virus alarm to administrator'.
In the selection
list, choose the entry Edit.
The
following fields are displayed:

Illustration: Virus alarm message to the administrator
Change the e-mail at wish.
Notice
The texts in percent signs are wildcards.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Notice
Proceed the same way with messages to the recipient and the sender.
Wildcards for virus alarm messages:
|
Wildcard |
Explanation |
|
%VIRUSNAME% |
Name of the detected virus |
|
%SENDER% |
Sender of the e-mail |
|
%RECIPIENTS% |
Recipient of the e-mail |
|
%SUBJECT% |
E-mail subject |
Notice
You
can find further text options in the REDDOXX FAQ system
at
http://support.reddoxx.com/otrs/public.pl?Action=PublicFAQ&ItemID=23
The REDDOXX Appliance generates a log file for each day. These are displayed in the list view Logs in the menu tree. These have the following file name format:
Appliance-yyyy-mm-dd_HH:MM.log (yyyy=year, mm=month, dd=day, HH=hour, MM=minute).
If the log exceeds a file size of 50 MB, a new log file is generated.

The logs can be displayed and analyzed with a special log analysis.
There are the following options to analyze logs:
Entire log in the viewer
Filter acc. to process ID
Smart Filter
Save log in local system
Entire Log
To view the log of a specific day with the viewer, click on "Logs" in the tree view and then double-click on the desired log in the list. The following log viewer appears:

Illustration: Log view
Process ID
It is possible to filter the log information of a certain process. To do so, you have to select a specific Process ID in the viewer. The Process ID is indicated by square brackets.
Smart Filter
Due to the fact that it is often desired to filter the progress of an associated action, e.g. the mail flow of an e-mail, but this passes through different processes, you can filter the process with the help of the Smart ID. The Smart ID is enclosed in round brackets.
Function of the Filtering Process (Process/Smart)
In the Log Viewer, right-click on a desired ID (Smart or Process ID).
The following menu appears:
Select the desired filter type.
Now the Log Viewer only displays the corresponding data.
To deactivate filtering, right-click on the option "Delete filters".
With version 1025 now you can filter the live log.
Right click in the log window.
Following context menu appears:

Illustration:
Live log filtering
Set filter

Illustration: Live log filtering settings
Process:
Enter a filter pattern. The pattern
is case insensitive.
Notice
Available filter items are:
ABL-Filter, AWL-Filter, Advanced-RBL-Filter, AntiSpoofing,
Archive, AutoWLAdjustment, Backup, Bayes, Bayes-Filter, BounceMail,
CISS, CleanUp, Cleanup, ControlServer, DBL-Filter, DWL-Filter,
Fuzzy-Filter, FuzzyStore, RBL-Filter, RVC-Filter, Report, SBL-Filter,
SMTPClient, SMTPServer, SRC-Filter, SWL-Filter, SendMail, Stats,
System, Validator, VirusScanner, permanently
Log text:
Insert a log text you want to filer for in the column Log.
Smart Filter:
As in Log Viewer described.
Filter process ID:
As in Log Viewer described.
Requesting Updates
We will inform you via email about new available updates with our release notes. The email gets send to the address you have specified under SETTINGS. You can request yourself an update by clicking on Request updates.
Requirements: none.
Select Updates in the tree view.
Right-click in the
list view.
The following view appears:

Select the entry Request updates.
The following message box appears:

Depending on your bandwidth, the update should be finished after a few seconds or minutes, and appears in the list area.
Notice
If you can not see the option „REQUEST UPDATES“ you probably use an old version of the console software. Download the latest one and request the update again.
You will see the following screen:

Notice
The anti-virus protection and anti-spam filter is updated automatically! Check whether there are enough valid licenses. The AV version should not be older than 1 to 2 days.
Installing Updates
Via the menu point "Updates", you can install updates.
Requirements: Updates available in the list.
Select Updates in the tree view.
Right-click in the list view.

Illustration: Selection of an update,
Choose the update you want to install out from the list view and click right.
Following
dialog appears:
Illustration: Starting an update
In the above window area you can see the release notes of the new version you are going to install. Please read them carefully.
Click on Start Update to install the update. The update starts and the new firmware gets installed. Usually this takes a short while. You can follow the single steps of the update inside the log window area.

Illustration: Protocol of a firmware update.
After that the update starts and the new firmware gets installed. Usually this is done in 1 – 2 minutes. When it’s done, you will see the update protocol. Have a look onto the last line if it shows that the update was finished successful. If not, refer to the FAQ section of the REDDOXX support area. (http://support.reddoxx.net)
Click
OK to close the Update message box.
The following dialog
appears:
If an error was reported during the Update save and check the log file and search for a possible solution in the FAQ-Area of the Reddoxx Support (http://support.reddoxx.net). If necessary contact the Reddoxx Support and insert the log file into your mail.
Notice
Updates must be installed version after version in
ascending order. Always read the release notes
carefully.
Installation of software updates in a cluster has
to be done only at the active appliance. The update will be installed
automatically on the passive node.
Delete Updates
Usually the update gets removed after it was installed. You can delete it by clicking right on it and choose “DELETE”.
Information about Sessions
Via the sessions, you
can view all users logged into the REDDOXX Appliance.
Illustration:
Sessions
Via the services administration, you can view and control the individual services.

Illustration: Services
The following diagram shows the mail flow of an e-mail:
Mail reception (SMTP server) - validation (Validator) - delivery (SMTP client):

Illustration: Mail flow diagram
The SMTP server receives emails from other e-mail servers and saves the emails in the queue "Incoming Messages". The phase 1 filters are checked before the mails are accepted.
The SMTP Client Service sends emails waiting for forwarding in the queue "Outgoing Messages".
The Control Server services the connections of the administrator consoles as well as of the user console and serves to configure and administer the REDDOXX Appliance.
The Message Validation Service checks all emails in the queue "Incoming Messages". Here the emails are checked with the phase 2 filters and for viruses. Depending on the result of the verification, the emails are then moved to one of the following queues: viruses, spam or CISS.
The Task Scheduler Service starts cyclic processes, e.g. the cleanup of the queues and the update of spam and virus patterns.
The Portal Communication Service processes emails sent by the REDDOXX portal, e.g. CISS. By encoding or decoding the emails, it takes care of safe communication with the REDDOXX portal.
The REDDOXX Remote Support
Service enables better remote maintenance for the REDDOXX support
without you having to change your firewall rules. The REDDOXX Remote
Support Service is always deactivated and should only be started
after consulting a REDDOXX support member.
Start Service
Via Services, you can start a service that is not running.
Requirements: Current status 'false'.
Select Services in the tree view.
Right-click on the service to be started.
In the selection list, choose the entry Start.

End Service
Via Services, you can stop a running service.
Requirements: Current status 'true'.
Select Services in the tree view.
Right-click on the service to be stopped.
In the selection list, choose the entry Stop.

Restart Service
Via Services, you can restart a running service.
Requirements: Current status 'true'.
Select Services in the tree view.
Right-click on the service you want to restart.
In the selection list, choose the entry Restart.

In the Spamfinder section, you make the presets for managing filter settings and the spam queues.
You will find emails that were not sent yet in one of the following queues. In all queues, you can send or delete one of the mails listed there by right-clicking. To sort the list entries, click on the desired column header. Another reverses the sorting direction. The content of an e-mail cannot be viewed due to legal regulations. Also keep in mind that emails, which you cannot find here, are already in the outgoing queue.
Spam queue
Emails listed in the Spam queue were classified as spam by the REDDOXX Appliance. In the 7th column "Filter", you see which anti-spam filter kicked in.

Notice
The e-mail is only listed in the spam queue if the action "QUARANTENE" is set for the filter.
CISS Queue
Emails whose senders are still unknown to the Spamfinder (=> not yet entered in the address or domain white list), are set to the CISS queue with activated CISS filter.
Notice
Make sure that OVERSTEERING of the negative filter CISS is activated for the filters AWL and DWL. For more details about the CISS filter technology, refer to the chapter 4.4.2.5 -Filter - CISS.
Viruses and prohibited File Extensions
Emails with viruses in attachments or attachments with prohibited file extensions are sent to the virus queue. Zipped file extensions are also checked for viruses if they are not encrypted.
Notice
Only the administrator can view and manage the virus queue.
The queues can be searched and deleted.
Also see: "Appliance Administration - Mail Queues".
Send E-Mail
You can send emails to the recipient in the respective queues.
Restrictions: E-mail forwarding is only possible in the queues Spam, CISS and Viruses.
In the tree view, select Queues with a double-click.
Select the desired queue.
Right-click on the e-mail to be sent.
In the selection list, choose the entry Send.
Send E-Mail (White list)
In the respective queues, you can send emails to the recipient and enter him in the White list at the same time.
Restrictions: E-mail forwarding is only possible in the queues Spam and CISS.
In the tree view, select Queues with a double-click.
Select the desired queue.
Right-click on the e-mail to be sent.
In the selection list, choose the entry Send (white list).
Sorting E-Mails
In the respective queues, you can sort emails via the column head in the list view.
Requirement: Emails available in the list.
In the tree view, select Queues with a double-click.
Select the desired queue.
Double-click on the
column head according to which you wish to sort your emails.
Sorting
takes place alphabetically.
Information about Filters
Contrary to concentrating on what's not desired, the REDDOXX Appliance filters out the emails the user wants to receive. Therefore the technology is based on the most modern and innovative filter techniques.
The sequence of different filter technologies can be configured individually and also be made available individually to the users via different profiles.
How E-Mails are filtered

Illustration: Filter scheme
Whitelists are so-called friendly lists, and inasmuch as certain criteria are fulfilled, the emails are forwarded directly without delay. These lists vary from individual e-mail addresses up to general domain addresses. They may contain individual IP addresses or IP address ranges or simply certain subject contents that classify an e-mail as "desired". In the REDDOXX Spamfinder, these lists were implemented as follows:
AWL: Addresses White list
DWL: Domain White list
NWL: Network White list
SWL: Subject White list
These filter lists are available to all users of a system on a general basis but also for individual users in order to perfect the accuracy of the REDDOXX Spamfinder.
White list Auto-Add Adjustment
The Whitelists are automatically supplemented as soon as a user sends an e-mail. This happens so that the answers to these emails are classified as "desired" and therefore forwarded.
Notice
To use the auto white list function, the outgoing mail traffic must also be routed via the REDDOXX Appliance.
Emails from certain domains, IP ranges, e-mail addresses or with certain subject content can be filtered out by the integrated Blacklist technologies. The administrator can create these lists company-wide and users can additionally maintain them.
However, the Blacklist filters of the REDDOXX Spamfinder are also based on external, public lists. A general problem of these filter techniques is the risk of wrong detection (so-called false positives).
The integrated user quarantine function of the REDDOXX Spamfinder reduces the risk of false-positives, because each user has the possibility to access his quarantine section and make sure that it does not contain emails, which don't belong there.
This also reduces the administrators' efforts to look for important emails among the spam.
The Blacklist filters integrated in the REDDOXX Spamfinder are:
ABL (address blacklist):
Checking the
sender's address against an address blacklist maintained in the
REDDOXX Spamfinder
DBL (domain blacklist):
Checking the sender's
domain against an address blacklist maintained in the REDDOXX
Spamfinder
NBL (network blacklist):
Checking the IP
address of a sending e-mail server against a network blacklist
maintained in the REDDOXX Spamfinder.
SBL (subject blacklist):
Checking the
e-mail's subject line against a subject blacklist maintained in the
REDDOXX Spamfinder
On the basis of external servers, the following filters are also available:
RBL (Realtime blacklist):
Realtime check of
the sending mail server against public blacklist servers.
ABL (advanced Realtime blacklist):
The
advanced Realtime blacklist filter checks the last mail server in
the mail flow, meaning the one who sends the e-mail to the
Spamfinder. If you obtain your emails via an own relay, this must be
excluded in the configuration.
Fuzzy filter:
Filter developed by REDDOXX,
which compares the content of the e-mail with already
identified spam mails.
SRC (sender receive check):
The sender
receive check filter is used to determine whether an e-mail is sent
from an existing e-mail account. This e-mail account would then in
turn accept a response to the corresponding e-mail. If not, the SRC
filter kicks in. In order to prevent that emails without a valid
sender, e.g. some newsletters or order systems, are not delivered by
accident, we recommend setting the filter action with the SRC to
MARK. In addition, you can maintain your desired newsletters in the
Whitelists.
SWL: Subject White list, SBL: Subject Blacklist and Bayes Filter
Content filters like the Bayes Filter are adapted to each user and also adapt to changes in spam. In order to detect emails as spam, these filters use Bayesian check sums to check the words and sentences of an e-mail with respect to their frequency for spam probability. Previous emails serve as comparison (spam and desired mails). The architecture of the REDDOXX Spamfinder's content filters refers to the CISS method, which first takes over the information of the content filters into the database when the CISS was passed successfully.
Antivirus Filter
As a comprehensive security system for emails, the REDDOXX Spamfinder Appliance also contains an integrated virus protection for your e-mail server. In order to highlight the quality standards of the filters, we use ClamAV which is open source software.
RVC: Recipient Verify Check
The RVC filter already checks upon acceptance of the e-mail (SMTP server dialog), whether the recipient address is known at all on the target system. If not, receipt is already denied during the send attempt. This prevents spam attacks on non-existent mailboxes without impairing the performance of your e-mail servers. The acknowledgement is: 550 Recipient not accepted (Unknown recipient: <xxxx@domain.tld>).
The Innovation of the REDDOXX Spamfinder Appliance is called CISS
CISS (Confirmation Interactive Site Server), is a unique, several stage control process, which ensures the permanent exchange of wanted mails between sender and recipient.
Stage 1: E-mail receipt, check for viruses through anti-spam filter and temporary saving. Dispatch of a response e-mail to the sender with the request for authentication at the stated link.
Stage 2: Request to perform a certain action on the Internet page, which can only be performed by a person, not by spam robots.
Stage 3: Feedback from the portal to the REDDOXX Spamfinder about the successful authorization and automatic forwarding of the e-mail to the recipient.
How does CISS work?

Illustration: CISS diagram
Known sender sends e-mail:
A customer or business partner sends you an e-mail.
The REDDOXX Appliance checks this e-mail with respect to viruses, worms, Trojans and of course, also whether this is a spam mail.
After this check, the e-mail is forwarded to you immediately.
Unknown sender sends e-mail:
An unknown person writes you an e-mail.
The REDDOXX Appliance checks this e-mail with respect to viruses, worms, Trojans and of course, also whether this is a spam mail. Because the sender is unknown, the e-mail is saved temporarily. The Spamfinder generates an e-mail to the sender with the request for the one-off authentication at the stated link.
On this Internet page, the sender is asked to perform a certain action, e.g. click on a certain part of an image.
Such actions can only be performed by persons and not automatically.
This action generates a reply to the REDDOXX Appliance about the successful authentication of the sender.
The saved e-mail is directly sent to you and now there is nothing in the way of your new business transaction!
You can configure the individual filters via the filter configuration.

Illustration: Navigation Tree – Filter settings
Common Filter Configuration
In
the tree view, double-click on Filters - Filter settings.
The
following fields are displayed:

Illustration: Common filter settings
Disable non-delivery report:
Usually a NDR
report sends back an email to inform the sender about that issue.
Tricky spammers use this method to transport spam. Disable this
option, if you do NOT want to inform a sending mail server that an
unknown recipient is not in your domain. This also prevents floating
your outgoing mail queue with undeliverable NDRs.
Realtime Blacklist Filter Configuration
The Realtime Blacklist Filter is a DNS Blacklist Filter. The Advanced Realtime Blacklist Filter is an Extended DNS Blacklist Filter. You can configure the Advanced Realtime Blacklist Filter as follows.
Change to the TAB
RBL-Filters
The
following fields are displayed:

Illustration: Filter configuration - Realtime Blacklist Filter
Enter a blacklist which the corresponding filter is supposed to query.
With the button Add, add the blacklist to the list.
With the button Add, add the relays you trust
within your mail flow. You can obtain the name of the relay e.g.
from the header of a mail (e.g. mail.company.net). 
Illustration: Header of an e-mail
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Auto White list Adjustment Configuration
This filter adds the recipient of the outgoing emails to the sender's Address White list.
Select the tab
– Auto white
list adjustment.
The
following fields are displayed:

Illustration: Filter configuration – Auto white list adjustment
If required, activate this filter.
Enter the desired validity in days.
Notice
Whitelists should be valid for at least 90 days.
To prevent that the sender address of a spam sender is entered in the white list due to an automatic response of your mailbox, you can deny the white listing of any subjects, e.g. holiday, absence (out of office), etc. To do so, enter a part or the entire subject into the subject exclusion field. This setting applies globally for all users.
Notice
The recipient of the outgoing emails cannot be configured for AutoResponder; use the exception function for this purpose.
With the button ADD,
add the exception to the list.
With
the button DEL, you can delete any exception already entered again.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Virus Scanner Configuration
In the configuration of the virus scanner, you can set to whom the notifications are sent. Here you can also state file extensions for attachments that are not allowed to pass.
Restrictions: Only the Virus Scanner can be configured the following way.
Select the tab
Virus scanner.
The following fields are displayed:

Illustration: Filter configuration – Virus Scanner
Activate the target person(s) that are supposed to receive a notification.
Enter the file extension to be blocked (e.g. .exe) and click on Add.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Notice
Please make sure that the entry of the file extension starts with a dot (.).
CISS Filter Configuration
With the CISS filter configuration, you can set the validity of the white list in days and the maximum challenges per sender. Challenges are the attempts of the sender to send an e-mail to the recipient for the x-th time (here: 3 times) without receiving a response from the recipient.
Restrictions: Only the CISS Filter can be configured the following way.
Select the tab CISS
filter.
The
following fields are displayed:

Illustration: Filter configuration – CISS Filter
State the desired validity of the CISS Filter white list in days. The default value is 365 days.
Enter the maximum challenges per sender. The default is 3.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Bayes Filter
In the Bayes filter
configuration, you can delete the Bayes database and
activate/deactivate the automatic training of the filter
Select the tab
Bayes filter.
The
following fields are displayed:

Illustration: Filter configuration – Bayes filter
The status contains the number of mails that serve as basis for the Bayes filter. The system distinguishes between spam and undesired mails. The physical size of these mails is additionally displayed in the database.
Activate automatic
training:
Before you apply the Bayes filter, you should train it
for approx. 1 week first. In doing so, the filter learns which mails
are desired or undesired by using Whitelists and blacklists and
constructs its database accordingly using the contents.
For
details about the functioning of the Bayes filter, see the chapter
"Filter settings".
Emptying the Bayes
database:
Due to initial configuration errors of the REDDOXX
Appliance or wrong entries in the blacklists and Whitelists, it may
happen that the Bayes filter classifies contents as SPAM and takes
them over into its database and therefore reports desired mails as
spam or does not detect undesired emails. In this case, you should
check the configuration of the REDDOXX and the
blacklists/Whitelists. Then you can empty the database and
re-establish it (= training).
Notice
After one week of training the Bayes filter, both values for the spam emails or the number of desired mails should show positive figures. The larger the two values are, the more exact the filter is going to work. Should the database become too large at one point (depends on the hardware equipment of your REDDOXX Appliance), this may impair the processing speed. In such a case, you can empty the database and retrain it. You should first train the filter before you using as an active filter.
Fuzzy-Filter
The Fuzzy Filter mostly works full automatically. Only when sending massively Emails like newsletters (=bulk), it can results in so called „False Positives“.
Choose
the tab Fuzzy
Filter.
Following
fields are displayed:

Illustration: Filter configuration - Fuzzy Filter
Disable
bulk detection:
Enable this checkbox
if massively Emails (e.g. newsletters) were detected as spam by
accident.
The core of the Spamfinder is its filter profiles. Here you can enter filter rules according to your spam frequency.
You can also create new profiles, change available profiles, copy and also delete them.
Here you define which filters are allocated to a profile and which profiles are to be available to the user for selection. Both the administrator as well as the user (if authorized) can add filter profiles to e-mail aliases.

Illustration: Filter Profiles
Pre-defined Filter
Profiles
The REDDOXX has 4 pre-defined filter profiles. In the basic configuration, they always contain the positive filters DWL, AWL and SWL.
Default Filter Profile
Initially, the default profile contains the filters FUZZY, RBL, ARBL, DBL, ABL, SBL, SRC.
With automatic user and e-mail alias creation, the default profile is always assigned first. Set this profile in such a way that it meets the requirements of most users in your company. The automatic e-mail alias generation with automatic assignment to the default filter profile significantly reduces the administration extent.
Quarantine Filter Profile
Initially, the quarantine profile contains the filters FUZZY, RBL, ARBL, DBL, ABL, SBL, SRC and BAYES. You can adapt this profile in such a way that it corresponds to the requirements deviating from the default profile.
The actions of most of these filters are set to quarantine. Bayes and SRC are set to "Mark".
Strong Filter Profile
The strong filter profile contains the filters FUZZY, RBL, ARBL, DBL, ABL, SBL, SRC and CISS. This profile is intended for users that want an immediate and reliable spam protection. This is ensured by the CISS filter.
Built-In Profile
The built-in profile is used if no filter profile was assigned to the e-mail alias yet. Prerequisite is the general activation of the profile (see chapter 4.2.3.6). It cannot be changed. It signals the administrator that the REDDOXX is in operation but not sufficiently configured, or that there are generally no licenses or not for this user. The built-in profile only contains the filters RBL, ARBL and FUZZY. Detected SPAM emails are marked with the tag [REDDOXX Spamfinder]. A deviating tag is not possible.
Creating a new Filter Profile
Requirement: None.
Select Filter Profiles in the tree view.
Right-click in the list view.
In the selection list, choose the entry Add.
The
following fields are displayed:

Illustration: Filter profiles – Tab "General"
Notice
The profile name is displayed alphabetically in the list view. You can define your own sorting sequence by prefixing numbers or group codes.
Enter the name of the profile in the profile options.
Activate the option Available to user, if you also want to make the filter profile available to the users. Then the users can select this filter profile for their e-mail addresses in the user console.
Import or export filter profiles, if applicable.
Export your desired filter profiles to be able to import it to another REDDOXX Appliance (e.g. at a subsidiary).
Filters
Different filters can be selected and compiled according to priority.
Requirement: None.
Click on the tab "Filter"
The
following fields are displayed:
Illustration: Filter profiles – Tab "Filter"
Positive
filter -Selected:
All
active positive filters are listed in the field Selected. You
can change the sequence of the filters with the vertical arrows. To
do so, mark the desired filter and click on the corresponding
button. You can change the sequence of the filters with the vertical
arrows.
Sequence: from top to bottom, top first.
Positive
filter -available:
All
available positive filters are listed in the field Available.
Via the horizontal arrows, you can add the available filters to the
list of selected filters and vice versa. To do so, mark the desired
filter and click on the corresponding button. You can change the
sequence of the filters with the vertical arrows. Sequence: from top
to bottom, top first.
Negative
Filters:
The same as for
the positive filters (point 2-3) applies for the fields "Selected"
and "Available". In addition, you can assign 3 different
actions to the individual negative filters. To assign or change an
action, double-click on a filter. The following window appears:

Illustration: Filter profiles – Tab "Filter" - action
Tag: A tag is a text that is prefixed to an e-mail in the subject field if the desired action MARK is selected. Other actions do not change the subject.
Action: In this selection list, you can choose between 3 actions:
Mark: Marks the e-mail in the subject field with the entered tag. The tag is prefixed to the subject and the e-mail is sent.
Quarantine: The e-mail is shifted to the protected quarantine directory and not sent to the recipient. All emails in quarantine are located in the Spamfinder queues.
Reject: The e-mail is rejected and not sent to the recipient. The sender receives a bounce e-mail.
Notice
If several negative filters kick in, the action with the strongest weighting is triggered.
Weighting sequence: MARK (light) - QUARANTINE (medium) - REJECT (strong).
With the anti-spoofing filter, make sure that the marking is not set to REJECT. Otherwise a bounce e-mail is generated that may be sent to you because your address was stated as sender.
Filter Sequence
The filter sequence is defined by the performance relevance and the false positive rate of the filter.
The selected negative filters are applied from top to bottom. If the action REJECT is triggered with a filter, no other filters are processed:
|
Filters |
Action |
|
Anti-spoofing |
Quarantine |
|
Fuzzy |
Quarantine |
|
RBL |
Quarantine |
|
Advanced RBL |
Quarantine |
|
SBL |
Mark |
|
ABL |
Mark |
|
DBL |
Mark |
|
SRC |
Mark |
|
Bayes |
Quarantine |
|
CISS |
Quarantine |
Illustration: Recommended filter sequence
Overriding Filters
If expressively desired emails (white list entry) are to be forwarded without further checking for SPAM relevance, the negative filters must be override by the respective positive filters (DWL, AWL, SWL). The ANTISPOOFING filter is an exception here.
Requirement: None.
Select Filter Profiles in the tree view.
Right-click on a profile in the list view.
Click on the tab "Override"
The
following fields are displayed:

Illustration: Filter profiles – Tab "Override"
Select, which positive filters overrides the negative filters. If a negative filter is overridden by a positive filter, the negative filter no longer has any relevance.
Notice
Especially with the CISS filter, the AWL filter MUST overrides the negative filter CISS, otherwise the CISS challenge is generated each time.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Edit Filter Profile
Here you can edit already created filter profiles.
Requirement: Created filter profile is available.
Select Filter Profiles in the tree view.
Right-click on the filter profile to be deleted.
In the selection list, choose the entry Edit.
Make the desired changes.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Copy Filter Profile
Here you can copy already created filter profiles.
Requirement: Created filter profile is available.
Select Filter Profiles in the tree view.
Right-click on the filter profile to be copied.
In the selection list, choose the entry Copy.
Double-click on the filter profile with the addition (copy).
In the profile options, enter the name of the new filter profile.
Click on OK to save the configuration and
exit.
Cancel:
Reject changes and exit the configuration.
Delete Filter Profile
Here you can delete already created filter profiles.
Requirement: Created filter profile is available.
Select Filter Profiles in the tree view.
Right-click on the filter profile to be deleted.
In the selection list, choose the entry Delete.
Confirm the prompting message with Yes
to delete the profile.
No:
Profile is not deleted.
Blocking and Admitting (Blacklists and Whitelists)
The following points apply for all lists described below:
- Global or user-related:
The settings for the black and Whitelists in the administrator console apply globally, meaning for all users. If there are applicable black/white list entries for the user as well, these take precedence over the global settings. Therefore it may be that a global block is on REJECT, but the user has set the block to MARK. Fact is: The user always wins!
The following applies for all blacklists: The action selected for a block applies. The setting in the filter profile itself is of no relevance.
- Validity date: