Administrator's Manual



Version 1026









WWW.REDDOXX.COM



Copyright

©2009 by REDDOXX GmbH


REDDOXX GmbH

Saline 29



D-78628 Rottweil



Fon: +49 (0)741 248 810

Fax:  +49 (0)741 248 811



E-mail: info@reddoxx.com

Internet: www.reddoxx.com

Support: http://support.reddoxx.net






Revision number 3.2.4

Approved & published 16.03.2010




This manual was prepared with great care. However, REDDOXX GmbH and the author cannot assume any legal or other liability for possible errors and their consequences.

No responsibility is taken for the details contained in this manual. Subject to alternation without notice. REDDOXX GmbH does not enter into any responsibility in this respect. The hardware and software described in this manual is provided on the basis of a license agreement.

This manual is protected by copyright law. REDDOXX GmbH reserves all rights, especially for translation into foreign languages. No part of this manual may be reproduced in any way (photocopies, microfilm or other methods) or transformed into machine-readable language without the prior written permission of REDDOXX GmbH. The latter especially applies for data processing systems.

REDDOXX GmbH also reserves all communication rights (lectures, radio and television).

The hardware and software names mentioned in this manual are most often the registered trademarks of the respective manufacturers and as such are subject to the statutory regulations. Product and brand names are the property of REDDOXX GmbH.

This issue replaces all earlier ones and orients itself on the appliance with respect to naming.

Table of Contents



1 REDDOXX Manual 9

1.1 Symbolism and Highlights 9

1.2 General Warning and Safety Notices 10

1.2.1.1 General Function Scope 12

2 The REDDOXX Appliance 13

2.1 The REDDOXX Appliance – RX-50 15

2.2 The REDDOXX Appliance – RX-100 16

2.3 The REDDOXX Appliance – RX-250 17

2.4 The REDDOXX Appliance – RX-750 18

2.5 The REDDOXX Appliance – RX-2500 19

2.6 Technical Data 20

2.7 Delivery Scope 21

3 First Steps 22

3.1 General Information 22

3.1.1 Function Description 22

3.1.2 Integration and Commissioning 22

3.1.3 Firewall - Port List 24

3.2 Brief Instructions for the Basic Configuration 25

3.2.1 Connection and Network Configuration 25

3.2.2 Login 26

3.2.3 Basic Configuration 27

4 The Administrator Console 33

4.1 Options in the Menu Bar 35

4.1.1 File: System Login/Logout 35

4.1.1.1 Logging in (Connect) 35

4.1.1.2 Logging off (disconnect) 36

4.1.1.3 Exiting the Program (exit) 36

4.1.2 View 36

4.1.2.1 Search 37

4.1.2.2 Log 37

4.1.2.3 Status 37

4.1.2.4 Statistic 37

4.1.2.5 Starting the Log Viewer 39

4.1.2.6 CISS Manager 39

4.1.2.7 Cluster Manager 43

4.1.2.8 Diagnostic Center 51

4.1.3 Language 55

4.1.4 Appliance 55

4.1.4.1 Restarting the REDDOXX Appliance 55

4.1.4.2 Turning the REDDOXX Appliance off 55

4.1.4.3 Setting the Time/Date 56

4.1.5 Help 56

4.1.5.1 License Information 56

4.1.5.2 Online Help 59

4.1.5.3 REDDOXX Support 59

4.1.5.4 Start Remote Support 60

4.2 Appliance Configuration 60

4.2.1 Network Settings 60

4.2.1.1 Network Settings - General 61

4.2.1.2 Network Settings - Network 62

4.2.1.3 Network Settings - Routing 64

4.2.1.4 Network Settings - Time Server 65

4.2.1.5 Cluster 66

4.2.2 Bridge Policies 67

4.2.3 Settings 67

4.2.3.1 Settings - General 68

4.2.3.2 Settings - SMTP 69

4.2.3.3 POP3 71

4.2.3.4 Settings - Limits 72

4.2.3.5 Settings - Queues 74

4.2.3.6 Settings - Advanced 77

4.2.3.7 Settings – BATV 78

4.2.3.8 Notification 80

4.2.3.9 Monitoring 81

4.2.3.10 Log 83

4.2.4 SMTP Configuration 84

4.2.4.1 Local Internet Domains 84

4.2.4.2 Local Networks 90

4.2.4.3 E-mail transport 91

4.2.4.4 Allowed IP Addresses 92

4.2.4.5 Blocked IP Addresses 93

4.2.5 Backup and Restore 94

4.2.5.1 Backup Settings 94

4.2.5.2 Restore Backup 96

4.3 Appliance Administration 97

4.3.1 Mail Queues 97

4.3.1.1 Incoming Mails 97

4.3.1.2 Outgoing Mails 98

4.3.2 User Administration 99

4.3.2.1 Users 99

4.3.2.2 Groups 103

4.3.2.3 E-mail Aliases 105

4.3.2.4 Realm 108

4.3.2.5 Policies – Group Policies 113

4.3.3 Notification 118

4.3.4 Logs 122

4.3.4.1 Filtering the live log 124

4.3.5 Updates 125

4.3.6 Sessions 129

4.3.7 Services 129

4.3.7.1 Overview 129

4.3.7.2 Mail Flow 130

4.3.7.3 SMTP Server Service 130

4.3.7.4 SMTP Client Service 131

4.3.7.5 Control Server Service 131

4.3.7.6 Message Validation Service 131

4.3.7.7 Task Scheduler Service 131

4.3.7.8 Portal Communication Service 131

4.3.7.9 Remote Support Service 131

4.3.7.10 Starting, Stopping and Restarting Services 131

4.4 REDDOXX Spamfinder 132

4.4.1 Spamfinder Queues 132

4.4.2 Filters 135

4.4.2.1 White list Filters 136

4.4.2.2 Blacklist Filters 136

4.4.2.3 Content Filters 137

4.4.2.4 Global Filters 137

4.4.2.5 CISS 138

4.4.2.6 Filter Settings 139

4.4.2.7 Filter Profiles 146

4.4.2.8 Blocking and Admitting 152

4.5 REDDOXX MailDepot 160

4.5.1 Archive Configuration 160

4.5.1.1 MailDepot - General 160

4.5.1.2 MailDepot Archive Data 162

4.5.1.3 MailDepot Filter Settings 163

4.5.1.4 MailDepot Microsoft Exchange Settings 164

4.5.2 Archiving policies 165

4.5.3 Exchange Server Agents 167

4.5.3.1 Adding a new Exchange Server Agent 167

4.5.3.2 Mailbox Archiving 169

4.5.3.3 Journaling mailbox archiving 170

4.5.4 Archive List 172

4.6 REDDOXX MailSealer 174

4.6.1 Ad hoc encryption with MailSealer Light 174

4.6.2 Permanent encryption with MailSealer Light 177

4.6.3 MailSealer Light Gateways 177

4.6.4 Asymmetric encryption with PGP keys and S/MIME 177

4.6.5 Encryption with PGP keys 178

4.6.6 Encryption with S/MIME certificates 178

4.6.7 Encryption with gateway certificates (S/MIME) 178

4.6.8 Configuration of the MailSealer 178

4.6.8.1 Configuration 179

4.6.8.2 Policies 183

4.6.8.3 Certificates 188

5 POP3 and Bridge mode 214

5.1 Operation mode with POP3 under REDDOXX 214

5.2 Operating modes 214

5.2.1 Standard mode 215

5.2.1.1 Configuration for receiving emails via POP3 215

5.2.1.2 Configuration for sending emails via SMTP 216

5.2.1.3 Configuration of the local internet domains 217

5.2.2 Bridge mode 218

5.2.2.1 Configuration and activation of the bridge mode 218

5.2.2.2 Connecting the appliance for using the bridge mode 219

5.2.2.3 Bridge policies 219

5.3 Managing users 220

5.3.1 Logging on to the user console 221

5.3.2 Message queues 222

6 The Appliance Console 223

6.1 Appliance Settings 224

6.1.1 Network Settings 224

6.1.2 Time Server Settings 226

6.1.3 Backup and Restore Settings 226

6.2 Backup and Restore 226

6.2.1 Backup and Restore Settings 226

6.2.2 Start an Appliance Backup 227

6.2.3 Start an Appliance Restore 227

6.3 Advanced Options 229

6.3.1 Database Maintenance 230

6.3.2 Rebuild the full text index of the MailDepot 231

6.3.3 Set Appliance Settings to Factory Defaults 232

6.3.4 Re-Create Database 233

6.3.5 Clear MailDepot 233

6.4 Cluster Options 233

6.4.1 Show size of data partition 233

6.4.2 Leave Cluster 234

6.5 Start and Stop Services 235

6.5.1 Start REDDOXX Engine 235

6.5.2 Start REDDOXX Remote Support 235

6.5.3 Appliance Reboot 235

6.5.4 Appliance Shutdown 235

6.6 Change Admin Password 236

7 FAQ - Frequently Asked Questions 237

8 Appendix 239

8.1 Contact and Support 239

8.2 Deinstallation and Disposal 239

8.3 License Agreements 239

9 Glossary 244

247

10 Index 248



1 REDDOXX Manual

1.1 Symbolism and Highlights

This manual is geared towards the administrator of the REDDOXX Appliance. For better legibility, please note that the term "Administrator" refers to both male and female administrators.

Please read the entire manual carefully to ensure professional application of the REDDOXX Appliance. This is the only way we can ease your work with the REDDOXX Appliance.

In the glossary, you will find a compilation of the terminology used in this documentation together with its respective explanations

The typography used in this manual has the following meaning:

Danger/Warning

All warning and safety notices in this manual are marked this way. Always observe the instructions so there will be no damage to persons and/or objects.



Notice

A notice or tip points out especially important and helpful information about the REDDOXX Appliance. The REDDOXX Appliance can only function correctly and error-free when it is transported, stored, installed, operated and maintained in line with the manufacturer's instructions.


Highlight

Example

Tab

"Name of the tab"

Field name

Name of the field

Buttons

Button

Selection list

List entry

List entry in list view

'Entry'



Also see: Refers to a chapter.


Names

Explanation of the respective name

1.2 General Warning and Safety Notices



This manual contains warning and safety notices, which serve for your own protection but also for the protection of the REDDOXX Appliance. In order not to endanger your safety, you have to observe the following basic conditions for the installation, use and operation of the REDDOXX Appliance.

The notices in this manual hare highlighted as follows:

Danger

Omitting precautions and safety measures may lead to severe health damage, injury to persons or even death.



Warning

Only expert personnel are allowed to operate the appliance or remedy possible errors in the hardware. Expert personnel are qualified persons authorized to commission and maintain the device, program the control, operate the hardware according to the safety instructions pursuant to the valid standards and have a corresponding qualification.



Notice

Observe the settings you perform in the REDDOXX Appliance. All setting you make is saved by the REDDOXX Appliance, not the REDDOXX Console. The Console is only the input mask. You will find these notices exclusively in the content of the manual.

Read the warning and safety instructions carefully before commissioning the REDDOXX Appliance.

Danger/Warning

Observe all instructions attached to the REDDOXX Appliance and listed in this manual.



Prior to cleaning the REDDOXX Appliance, pull the mains plug. Do not use any liquid cleaning agents or agents containing aerosols. Only use a damp cloth for cleaning.



Do not use the REDDOXX Appliance near water. Do not spill any liquid on or into the REDDOXX Appliance.



Place the REDDOXX Appliance on a stable surface.



There are ventilation openings in the casing. These openings may not be obstructed or covered. Do not place the REDDOXX Appliance next to or on top of a radiator.



Only use the power source stated at the mains connection. If you are not sure about the kind of power source you have, contact your local energy supply company.



Do not walk on the cable and do not put anything on it.



If you are using an extension cord for the REDDOXX Appliance, make sure that the total amperage or all devices connected to this extension cord does not exceed the admissible amperage for the extension cord.



Do not insert any objects into the ventilation slots of the REDDOXX Appliance.



Do not attempt to service your REDDOXX Appliance yourself with the exception of the cases explained in this manual. Only use the controls mentioned in these instructions. If you open covers with the notice "Warranty void if broken", you may expose yourself to high voltage or other risks. Leave the maintenance of these parts up to expert personnel.



In the following cases, pull the mains plug of the REDDOXX Appliance out of the outlet and let expert personnel service the REDDOXX Appliance.
- The cables or the plug are damaged.
- Liquid was poured into the REDDOXX Appliance.
Despite following the instructions, the REDDOXX Appliance does not work properly.
The REDDOXX Appliance was dropped or the casing is damaged.
- The REDDOXX Appliance shows substantial performance changes.



Always transport the REDDOXX Appliance carefully. Impact stress or dropping can also damage the inside of the device. Do not operate damaged devices!

1.2.1.1 General Function Scope

Thank you for purchasing the REDDOXX Appliance and the corresponding appliance console. The REDDOXX Appliance is an innovative product for the reliable, active and individual prevention of spam problems and legally conform e-mail archiving. In addition, you can also send critical business data and sensitive information in encrypted form to your business partners, so that unauthorized persons cannot read even intercepted mails. With the REDDOXX Appliance, you protect your company from technical and economic damage as well as image damage.

The REDDOXX Appliance filters undesired mail out right from the start. You save a lot of time, because viruses, worms and Trojans cannot penetrate your active network. The REDDOXX Appliance is simply switched before the e-mail server and geared exactly towards the individual requirements of your company.

Our solution is just as unusual as it is successful:
Contrary to the standard approach "filtering out what is not desired", the REDDOXX Appliance pursues the proactive way: "pre-define what you want!"

The REDDOXX Appliance is an optimally coordinated software and hardware unit, which only selects and forwards desired emails immediately. It is installed between the firewall and the e-mail server and therefore only requires a minimum interference with your company's IT.

The REDDOXX Appliance immediately solves four major problems:

  1. What's spam for one is a relevant mail for the other. This is why the REDDOXX Appliance selects the desired mails and determines the relevance of the mail with the authorization of the sender in case of doubt.

  2. With pre-definition, additional filters and the interactive authorization of the e-mail sender, the REDDOXX Appliance offers the highest chances for success in spam combating and achieves the highest degree of satisfaction for the applicant.

  3. Archiving of all emails through MailDepot:

    1. Organizational transparency and increased productivity.

    2. Prevention of accidental or intentional deletion of relevant mails.

    3. Increased time resources for administrators and users through user-defined access options to archived emails.

  4. Encrypted e-mail transmission with MailSealer

2 The REDDOXX Appliance

Information about the REDDOXX Appliances

We offer you the custom-tailored solution for your company. In doing so, we consider your individual requirements ranging from the current number of workplaces up to the further development of your company. The different versions ensure that the REDDOXX Appliance meets all the requirements of small, medium and large-sized companies.



The REDDOXX Appliance has a modular structure: It consists of the products



The REDDOXX Appliance is available in the following versions:



REDDOXX general:



REDDOXX Spamfinder:



REDDOXX MailDepot:



The REDDOXX Appliance is installed between the firewall and the e-mail server and therefore only requires a minimum interference with your company's IT.



REDDOXX MailSealer:



Notice

For the hardware data, refer to the chapter "REDDOXX Appliance - Technical Data" in the documentation of your REDDOXX Appliance.

2.1 The REDDOXX Appliance – RX-50

The REDDOXX Appliance RX-50 is suited for the demands of small and medium-sized companies up to 50 User.



Illustration: REDDOXX Appliance - RX-50

Illustration: Connections of the REDDOXX RX-50 Appliance

Components

How to connect the REDDOXX Appliance correctly

1. REDDOXX Appliance

Connect the REDDOXX Appliance with the mains plug (1).

2. Mains plug

Insert the mains plug (1) into a suitable outlet.

3. Network cable

Plug your network cable into LAN-1 (2).



A  On/Off switch

Turn the REDDOXX Appliance on. (front side)

B  Monitor connection

Only for maintenance purposes

C  USB

Only for maintenance purposes





Attention

Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.

2.2 The REDDOXX Appliance – RX-100

The REDDOXX Appliance RX-100 is suited for the demands of medium-sized companies up to 100 User.

.

Illustration: REDDOXX Appliance - RX-100 with front cover



Illustration: REDDOXX Appliance - RX-100



Illustration: Connections of the REDDOXX RX-50 Appliance

Components

How to connect the REDDOXX Appliance correctly

1. REDDOXX Appliance

Connect the REDDOXX Appliance with the mains plug (1).

2. Mains plug

Insert the mains plug (1) into a suitable outlet.

3. Network cable

Plug your network cable into LAN-1 (2).



A  On/Off switch

Turn the REDDOXX Appliance on. (front side)

B  Monitor connection

Only for maintenance purposes

C  USB

Only for maintenance purposes





Attention

Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.

2.3 The REDDOXX Appliance – RX-250

The REDDOXX Appliance RX-250 is suited for the demands of large medium-sized companies up to 250 User.



Illustration: REDDOXX Appliance - RX-250 with front cover



Illustration: REDDOXX Appliance - RX-250



Illustration: Connections of the REDDOXX RX-50 Appliance

Components

How to connect the REDDOXX Appliance correctly

1. REDDOXX Appliance

Connect the REDDOXX Appliance with the mains plug (1).

2. Mains plug

Insert the mains plug (1) into a suitable outlet.

3. Network cable

Plug your network cable into LAN-1 (2).



A  On/Off switch

Turn the REDDOXX Appliance on. (front side)

B  Monitor connection

Only for maintenance purposes

C  USB

Only for maintenance purposes





Attention

Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.

2.4 The REDDOXX Appliance – RX-750

The REDDOXX Appliance RX-750 is suited for the demands of large-sized companies up to 750 User.



Illustration: REDDOXX Appliance - RX-750 with front cover



Illustration: REDDOXX Appliance - RX-750



Illustration: Connections of the REDDOXX RX-50 Appliance

Components

How to connect the REDDOXX Appliance correctly

1. REDDOXX Appliance

Connect the REDDOXX Appliance with the mains plug (1).

2. Mains plug

Insert the mains plug (1) into a suitable outlet.

3. Network cable

Plug your network cable into LAN-1 (2).



A  On/Off switch

Turn the REDDOXX Appliance on. (front side)

B  Monitor connection

Only for maintenance purposes

C  USB

Only for maintenance purposes





Attention

Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.

2.5 The REDDOXX Appliance – RX-2500

The REDDOXX Appliance RX-2500 is suited for the demands of enterprise-sized companies up to 2500 User.

Illustration: REDDOXX Appliance - RX-2500 with front cover

Illustration: REDDOXX Appliance - RX-2500

Illustration: Connections of the REDDOXX RX-50 Appliance

Components

How to connect the REDDOXX Appliance correctly

1. REDDOXX Appliance

Connect the REDDOXX Appliance with the mains plug (1).

2. Mains plug

Insert the mains plug (1) into a suitable outlet.

3. Network cable

Plug your network cable into LAN-1 (2).



A  On/Off switch

Turn the REDDOXX Appliance on. (front side)

B  Monitor connection

Only for maintenance purposes

C  USB

Only for maintenance purposes





Attention

Observe all warning and safety notices as well as all other relevant information about the proper handling of the REDDOXX Appliance.

2.6 Technical Data



Hardware Appliance

 

RX-50

RX-100

RX-250

RX-750

RX-2500

Basis

 

DELL OP 760

DELL CR100

DELL R200

DELL R300

DELL PE 2950

Queue capacity

60 GB

100 GB

120 GB

280 GB

1000 GB

Recommended number of users

50

100

250

750

2500

Raid-Level

n.a.

n.a.

RAID 1

RAID 1

RAID 5, Hotplug

Processor

1x Intel Cel 440 2,0 GHz

1x Intel Cel 440 2,0 GHz

1X Intel DC E2200

1X Intel DC E6305

2x Intel QC E5420

Memory (RAM)

512 MB

512 MB

1 GB

2 GB

4 GB

Enclosure

Desktop .

19" Short Rack 1U

19" Rackmount 1U

19" Rackmount 1U

19" Rackmount 2U

Measures (W x H x D)

31.4 x 9.26 x 34 cm

44,7 x 4,27 x 45,61 cm

44,7 x 4,27 x 54,61 cm

42,63 x 4,24 x 66,04 cm

44,3 x 8,64 x 74,4 cm

Weight

7 kg

8,9 KG

11,8 Kg

13,5 Kg

23 Kg

Voltage

100-240 V

100-240 V

100-240 V

100-240 V

100-240 V

Input power / frequency

5-3A / 50-60 Hz

5-3A / 50-60 Hz

5-3A / 50-60 Hz

5-3A / 50-60 Hz

5-3A / 50-60 Hz

Operating temperature

10° -40°

10° -35°

10° -35°

10° -35°

10° -35°

Relative humidity

8-90% non-condensing

8-90% non-condensing

8-90% non-condensing

20-90% non-condensing

20-90% non-condensing

Certification

CE

CE

CE

CE

CE

 

 

 

 

 

 

 

Virtual Appliance

RX-50

RX-100

RX-250

RX-750

RX-2500

Recommended number of users

50

100

250

750

2500

Required memory (RAM)

256 MB

512 MB

1024 MB

2 GB

4 GB

number of processors

1

1

1

1

1





2.7 Delivery Scope

Prior to the installation, check your delivery for completeness. The delivery contains the following products:



Notice

The latest version of the REDDOXX software as well as the manuals can be downloaded in the support section at http://support.reddoxx.net



Receipt

Check the product for damages upon receipt.

If you notice any apparent damage upon delivery or when unpacking the merchandise, contact your retailer.



Warning

Always transport the device carefully. Impact stress or dropping can also damage the inside of the device. Do not operate damaged devices!

3 First Steps

3.1 General Information

This chapter is supposed to help you with putting the REDDOXX Appliance into operation and contains all steps required to ready the REDDOXX Appliance for operation. First we will show you in a diagram where to install the REDDOXX Appliance. The additional chapters then deal with the connection, registration, basic configuration and operation of your REDDOXX Appliance.

3.1.1 Function Description

The REDDOXX Appliance behaves like a e-mail server vis-à-vis the sender. The first filters already become active while the connection between the sending e-mail server and the REDDOXX Appliance is being established. Depending on the filter settings, the REDDOXX Appliance may already reject emails at this stage.

Also see: "Filters"

The REDDOXX Appliance can manage several e-mail domains and forward the respective emails to the different e-mail servers in your company.

3.1.2 Integration and Commissioning

The standard system consists of one or several e-mail servers and the REDDOXX Appliance, which is installed between the e-mail servers and your firewall, if available.

Illustration: Function diagram of the REDDOXX Appliance

You only need a few steps to put the REDDOXX Appliance into operation.

For more information, refer to the following brief instructions.


Tip

For efficiently combating spam, we recommend installing the REDDOXX Appliance directly behind your firewall as a so-called first mail hop. Then the sender establishes the connection directly with the REDDOXX Appliance.

As the REDDOXX Appliance is capable of learning from your actions, we recommend you also direct the outgoing e-mail traffic through the REDDOXX Appliance.


3.1.3 Firewall - Port List

These ports must be opened for perfect operation of the REDDOXX Appliance:



SMTP/25 TCP in/out
For incoming / outgoing emails

DNS/53 UDP/TCP out
For domain name service requests to your DNS server.

HTTP/80 TCP out
For communication with the REDDOXX portal. This is where the license information is checked.


For the REMOTE SUPPORT SERVICE. It is possible to activate a remote access for REDDOXX's technical support via the REMOTE SUPPORT SERVICE, port 80 on the REDDOXX switching computer (RDXCALL).


For Software- and pattern updates, spam validations.


NTP/123 UDP out
For time leveling with a time server


SMB 137,138 UDP out, 139 TCP out, CIFS 445 TCP out
for backup and archiving (mail depot) on a remote Windows/Samba share.

LDAP/389 TCP out, LDAP/636 out for SSL
For user authentication and recipient check via Active
Directory, OpenLDAP, Novell eDircetory, Lotus Notes Domino.


LDAP/3268 TCP out

For higher-performance LDAP queries against a Global Catalog Server.


REDDOXX/4010 TCP in
For the user and administrator console of the REDDOXX Appliance.


REDDOXX/4011 TCP in
For communication between admin console and the control service port of the appliance, required for the cluster manager, diagnostic utilities and the remote support service.




Notice

You should especially pay attention to these ports when the REDDOXX Appliance is included in another network segment, e.g. a DMZ, and separated from the internal LAN through a firewall.



3.2 Brief Instructions for the Basic Configuration

3.2.1 Connection and Network Configuration

Connecting the REDDOXX Appliance

Proceed as follows to integrate the REDDOXX Appliance into your system.

Requirements: Read the warning and safety instructions.

  1. Connect the Spamfinder Appliance to the power supply.

  2. Connect a monitor and a keyboard.

  3. Turn the REDDOXX Appliance on.
    The IP address is 192.168.
    0.1.

  4. Login as user "admin" with the password "AppAdmin". The administration menu appears. For further details and screenshots, refer to chapter 6 - Appliance Console.

  5. Select the item – Settings

  6. Select the item – Network

  7. Enter the network data. (host name, domain, IP address, netmask, gateway, 1st DNS, 2nd DNS)

  8. Press the TAB key to reach OK and press ENTER. Now the network interface is re-initialized.

  9. Select BACK to access the main menu.

  10. Select EXIT to exit the console program.

  11. Connect a network cable (RJ45) and then connect the appliance with your network.

  12. Proceed with the configuration of the admin console as described in the following chapter.

Notice

For function descriptions and the exact connections of the REDDOXX Appliance, refer to the main chapter 2 and there to the different model variants.








3.2.2 Login

Performing the Login

For safety reasons, the REDDOXX Appliance is only accessible via login. Therefore you have to authenticate yourself as follows with your user name and password:

Requirements: Purchase of the REDDOXX Appliance with the valid licenses.

  1. Copy the content of the REDDOXX CD onto your computer.
    The files may be copied to any directory of your choice.

  1. Double-click on the file rdxadmin.exe. 
    The login window opens.

Illustration: Login window

  1. Enter the corresponding hostname.

  2. Enter your user name.

  3. Enter your password.

Notice

The following standard values are set upon delivery of the REDDOXX Appliance:
User name:
 sf-admin and password:  admin




  1. In realm, select the option "local".
    A realm is a section similar to a domain where you authenticate yourself.

  1. Select the desired language in the selection list, which you want to use to display your program.
    The selection contains the currently installed languages.

  2. Click on the button LOGIN.
    The welcome window opens.

Illustration: Welcome mask

  1. Click on the button „Setup assistant" to start the assistant for the first configuration of the REDDOXX Appliance.

Notice

Only perform the setup assistant once.






3.2.3 Basic Configuration

Making the Network Settings

To help you with the basic configuration, the setup assistant takes you through all relevant settings.

Requirements: The window for the network settings is active.



Notice

If the network settings of the appliance were previously configured via the Appliance Console (chapter 3.2), you can simply take over the data listed there.




Illustration: Basic configuration – network settings

  1. Enter the host name.

  2. Enter a/your domain.

  3. Enter the IP address of the REDDOXX Appliance.

  4. Enter the corresponding subnet mask.

  5. Enter the standard gateway for the Internet connection.

  6. Enter at least one DNS server.


Notice

Ensure that the DNS server is accessible, especially if the REDDOXX Appliance is located in a DMZ.



  1. To continue the basic configuration, Click on the button NEXT. Cancel: Reject changes and exit the basic configuration.

Adding E-Mail Domains

Via the e-mail domains, you have the possibility to add all domains for which the REDDOXX Appliance is supposed to receive emails.


Illustration: Basic configuration – e-mail domains

  1. Enter all domains for which you want to receive emails.

  2. Click on the button ADD.
    The entered e-mail domains are listed in the field e-mail domains.


Notice

Observe the correct spelling of the e-mail domains. The REDDOXX Appliance cannot receive any emails for other domains.



  1. To continue the basic configuration, Click on the button NEXT.
    Back
    : Goes back to the previous window.
    Cancel
    : Reject changes and exit the basic configuration.


Notice

In order to delete an added domain again, mark the corresponding entry with a mouse and delete it with the DEL button on your keyboard. This action cannot be undone.

Add Local Networks

Via the local networks, you can add all local networks for which the REDDOXX Appliance is supposed to function as e-mail relay. This way, the REDDOXX Appliance cannot be abused as open e-mail relay when emails are sent from the inside to the outside via the REDDOXX Appliance.

Illustration: Basic configuration – local networks

  1. Enter the IP network which may send mails to the REDDOXX Appliance.

  2. Enter the subnet mask. With the subnet mask 255.255.255.255, you enter a single host (e.g.192.168.0.8).


Notice

Instead of an entire network, you can also state individual IP addresses, e.g. that of your mail server. Individual IP addresses must be masked with 255.255.255.255.



  1. Click on the button ADD.
    The entered local networks are listed in the field Local Networks.

    If you have several e-mail servers in various IP networks, please also add these networks or hosts.

  1. To continue the basic configuration, Click on the button NEXT.
    Back
    : Goes back to the previous window.
    Cancel
    : Reject changes and exit the basic configuration.


Notice

In order to delete an added network again, mark the corresponding entry with a mouse and delete it with the DEL button on your keyboard. This action cannot be undone.



Configuring E-Mail Forwarding

Via E-Mail Forwarding, you can state where the REDDOXX Appliance is supposed to forward the emails to.

Illustration: Basic configuration – e-mail forwarding

  1. Outgoing emails:
    Enter the FQDN (host name).
    If necessary, activate the option Forwarding via DNS if the emails are supposed to be delivered via DNS.

  2. Activate the option Authentication required if the relay server demands authentication.

  3. Enter the user name and password if you have activated this option in step 3.

  4. Incoming emails:
    If necessary, activate the option Forwarding via DNS if the emails are supposed to be delivered via DNS.

  5. Enter an internal e-mail server at internal e-mail server.


Notice

If you have several internal e-mail servers, you can configure these later per domain.

  1. To continue the basic configuration, Click on the button NEXT.
    Back
    : Goes back to the previous window.
    Cancel
    : Reject changes and exit the basic configuration.

Defining E-Mail Addresses

Here is where the e-mail address of the administrator and the REDDOXX Appliance are managed, which the REDDOXX Appliance requires for the forwarding of system messages. The REDDOXX Appliance uses the administrator's e-mail address to communicate with the administrator. The REDDOXX Appliance's e-mail address is used to communicate with the REDDOXX Portal.

Illustration: Basic configuration – e-mail addresses



  1. In the field Administrator address enter the administrator's e-mail address.
    The administrator address must exist on one of your e-mail servers. At this address, you receive messages concerning innovations (release notes) and updates of the REDDOXX Appliance.

  2. In the field REDDOXX address, enter the e-mail address of the REDDOXX Appliance.

Notice

The e-mail address of the REDDOXX Appliance is required for internal operation and may not be used otherwise.
Make sure that this e-mail address does not exist on your mail server and that it is forwarded by possible upstream firewalls or relays.



  1. To finish the basic configuration, Click on the button FINISH.
    Back
    : Goes back to the previous window.
    Cancel
    : Reject changes and exit the basic configuration.

4 The Administrator Console

Information about the Administrator Console

This chapter explains the exact handling of the administrator console. The administrator console was developed to ease the handling of the REDDOXX Appliance. You can supplement or change all settings of the REDDOXX Appliance via the console at any time. Before you access the actual application window of the REDDOXX Appliance console, you have to log in.

Performing the Login

For safety reasons, the REDDOXX Appliance is only accessible via login. Therefore you have to authenticate yourself as follows with your user name and password:

  1. Copy the content of the REDDOXX CD onto your computer.
    The files may be copied to any directory of your choice.

  1. Double-click on the file rdxadmin.exe. 
    The login window opens.

Illustration: Login window

  1. Select the corresponding hostname.

  2. Enter your user name.

  3. Enter your password.

Notice

The following standard values are set upon delivery of the REDDOXX Appliance:
User name:
 sf-admin and password:  admin

  1. In realm, select the option "local".

  1. Select the desired language in the selection list, which you want to use to display your program.
    The selection contains the currently installed languages.

  2. Click on the button LOGIN.
    The application window for the basic configuration is now active.



The following application window contains the sections of the administrator console numbered and named:

Illustration: Application window after login

Legend

  1. Menu bar

  2. Tree view

  3. List view

  4. Status view

  5. Log view

4.1 Options in the Menu Bar

The main menu consists of the sections File, View, Language, Appliance and Help.

Illustration: Main menu

In the title bar the console software version is showed. Please mind, that you always use the latest software version. Download under http://support.reddoxx.net.



4.1.1 File: System Login/Logout

For safety reasons, the REDDOXX Appliance is only accessible via login. Therefore you have to authenticate yourself with your user name and password.

Illustration: Menu File



4.1.1.1 Logging in (Connect)

Requirements: The administrator console (the program sf-admin.exe) must be started. There is no current connection to the system (logged out).

  1. In the main menu File, click on Connect. The following dialog is displayed:

Illustration: Login window

  1. Host name: Enter the host name to which you want to connect or select it from a list. The list contains the entries you already made so far.

  2. User name: Enter sf-admin.

  3. Enter the password.


Notice

The following standard values are set upon delivery of the REDDOXX Appliance:
User name:
 sf-admin and password:  admin



  1. In realm, select the option "local".

  1. Select the desired language in the selection list, which you want to use to display your program.
    The selection contains the currently installed languages.

  2. Click on the button LOGIN.
    The application window for the basic configuration is now active.

4.1.1.2 Logging off (disconnect)

If you want to login to another REDDOXX Appliance, you first have to disconnect the current connection.

  1. In the menu bar, click on Disconnect.

  1. Close the application (exit) or login again.

4.1.1.3 Exiting the Program (exit)

    To exit the administrator console, select the menu point Exit. Any connections that are still established are closed as well.

4.1.2 View

Illustration: Menu View

4.1.2.1 Search

With the option SEARCH, you show or hide the search field in the top right part of the window. This way, you can search the entries in all queues according to sender or receiver.

Requirement: The content of a queue or the archive list is displayed.

Illustration: Search entry field

  1. Search term: Enter the criterion for which you want to search.

NOTICE

Per default the view is limited up to 1000 entries. Fill in a „@“ if you want to see all entries.

  1. Search in: Select the desired field type in the selection list. You can select between "Sender" (pre-selection) and "Recipient".

  2. Search: Search to start the search.

4.1.2.2 Log

Via the option Log (also F7 key), you can turn the live log on or off. In deactivated mode, you therefore have more room for the above list view.

4.1.2.3 Status

Via the option Status (also F8 key), you can turn the appliance status display on the bottom left of the window on and off. In deactivated mode, you therefore have more room for the above navigation tree.

4.1.2.4 Statistic

Via "Statistic", you can create diagrams about the filter behavior of the REDDOXX Appliance, print and save them.

Requirement: Logs must be available.

  1. In the menu bar, click on View.

  2. In the selection list open the context menu with a right-click
    The following view appears:

Illustration: Statistic context menu

  1. ADD Series adds a new graph onto the diagram.


    The following view appears

Illustration: Add line

  1. Make your desired selections

  2. Add the desired statistic by Clicking on OK.
    Following view appears:

Illustration: Statistics chart

  1. Right click on a graph to open the context menu.

  2. Change Color of the selected graph

  3. Remove the selected graph from the chart.

4.1.2.5 Starting the Log Viewer

    The Log Viewer lets you view logs. This corresponds to the same function as described in chapter 4.3.4, but you can also view logs that were already saved locally or logs of other REDDOXX Appliances (e.g. subsidiaries). To do so, open the dialog file and load the desired log file.

4.1.2.6 CISS Manager



4.1.2.6.1 Configuring CISS - Creating Themes

Here you define the appearance (layout) of your CISS portal page. If you wish to have different layouts for separate domains, you need to create multiple themes and then assign a domain to your prepared themes.

Illustration: CISS manager

  1. In the tree, right-click on CISS themes.

  2. In the selection list, click on Add theme and assign a name of your choice.

  3. Select a desired layout for your CISS page. 5 different layouts are available.

  4. Then select the individual areas to define the corresponding layout.

  5. In order to integrate a logo, Click on the button LOAD in the Logo preview. The supported image formats are GIF and JPG.

Notice

Image size: 400px width. Larger images are automatically scaled down, smaller images are not enlarged.

  1. In order to integrate a background image, Click on the button LOAD in Background image. The supported image formats are GIF and JPG.

Notice

You can constantly see a preview of your generated CISS page. To do so, Click on the button Preview.

4.1.2.6.2 Configuring CISS - Adding Images

Here you can add and configure images for use by CISS.

  1. In the tree, click on your created theme and then right-click on Images. Then click on Add image and select the desired image.
    The following view appears:

Illustration: CISS manager - images

  1. Select the grid size for generating the interaction fields via the option Grid size.
    Now define the interaction fields by clicking on the desired image area.

NOTICE

Interactive fields are shaded. Clicking again on a shaded field cancels the interaction again.



  1. To be able to configure instructions, you first have to add languages.

4.1.2.6.3 Configuring CISS - Adding Languages

Here you can add and configure different languages for use by CISS.

  1. In the CISS navigation tree, click on your created theme and then right-click on Languages. Then click on Add language in the selection list and select the desired language. The following view appears:

Illustration: CISS manager – languages


  1. For each language, you can now define separate text versions for the parameters "error page, thank you page, top text, back button and close window".

  2. To define these texts, double-click on the corresponding parameters (e.g. error page). The text editor is displayed:


Illustration: CISS manager - languages - text editor

  1. You can define your own texts in the text editor.


NOTICE

You can obtain a selection of German and English sample texts from the REDDOXX Support Center at: http://support.reddoxx.net in the column REDDOXX Spamfinder – CISS - Text samples.



4.1.2.6.4 Configuring CISS - Adding Domains

Here you can assign a theme to an e-mail domain, which is then active for the use of CISS.

Requirement: A local Internet domain must already be configured.

  1. In the tree, click on your created theme and then right-click on Domains. Then click on Add domain in the selection list and select the desired domain.

    The following view appears:

Illustration: CISS manager - domains



NOTICE

All e-mail domains entered in Domains are activated for use by CISS. However, in order for CISS to kick in, the CISS filter must be assigned for the respective filter profile.

  1. Click OK to add the domain to the theme.

  2. To save the entire CISS configuration, click on Save.
    With a click on CANCEL
    , you close the CISS Manager and cancel the configuration.





4.1.2.7 Cluster Manager

The cluster manager enables the setup of a failover cluster with 2 appliances. Within one failover cluster the active node additionally takes over the IP address on its network interface card. If, due to a malfunction, the active node fails, the secondary node will take over the failover IP address, thereby turning into the active node and staying accessible for the other network components, e.g. firewall and mail server, under the same IP address.





Functional Diagram

Illustration: Cluster functional diagram





INFORMATION

The heartbeat network gets installed using the two secondary LAN interfaces (LAN 2) of the appliances and a crossed patch cable. Both appliances are controlling with the help of a regular impulse (heartbeat) whether the other appliance is still working properly. If the primary appliance does not react anymore, the secondary appliance will assume all data resources and start the required services (engine and data base). In case of a failover or an appliance breakdown the administrator will be advised by an email.







Requirements



Restrictions



Preparation of the Appliances





4.1.2.7.1 Setup of a cluster operation



  1. Select Cluster Manager from the menu View.
    Following dialog appears:

Illustration: Cluster connect



  1. Primary Appliance:
    The input field Primary Appliance is preset with the hostname or IP address used by the login.

  2. Secondary Appliance:
    Fill in the hostname or the IP address of the secondary appliance you want to build the cluster with. If there is an IP address preset in the field primary appliance, the IP address of that field will be used but without the last octet.

  3. Click on Connect.
    Following dialog appears:

Illustration: Cluster Manager





  1. Click on Create cluster.
    Following dialog appears:

Illustration: Create cluster



  1. Failover IP-Address:
    The failover IP address is the common IP address the cluster is connected from the internal network e.g. firewall and mail server.


Notice

After the cluster setup the primary appliance (node) is active. The active node additionally has assigned the failover IP address to its network interface card. If the primary node fails, the secondary node take over the failover IP address and starts all required services (Engine, Database). So the cluster is herby available still under the same common IP address as before, independent of which node currently is active. All data are synchronized permanently during normal operations and are secured on a transaction base.


Heartbeat network

  1. Node 1 IP:
    Default: 192.168.250.1

  2. Node 2 IP:
    Default: 192.168.250.2



Notice

The heartbeat network is preset on defaults. Change the values if the presets do not fit within your internal network environment.




  1. Click on OK to continue.
    Following security warning appears:

Illustration: Security warning dialog on create cluster



  1. Confirm the security warning with “Yes” to create the cluster now.
    The cluster creation now starts. Status messages of each single step are shown inside the action log below. This process takes only some minutes.


Illustration: Log view during the cluster setup process



  1. At the end of the cluster setup process following message box returns the status of the process. Confirm with OK.


Illustration: Status message after creating the cluster



  1. Now the synchronizing of both appliances starts. This is indicated by the yellow cluster status. After successful synchronization the cluster status turns into green.



Notice

For the next login at the admin console the hostname or the IP address is replaced by the failover hostname or IP address. Therefore you can login independently from whether which appliance currently is active.



  1. Now insert a cluster subscription license.



Notice


If the cluster is not available (e.g. offline) the status „Service failure“ in indicated as red. At the end of the cluster setup the appliance engine is restarted so the status also turns red for a moment. Do not worry about this.

If on the cluster nodes is offline or has an operation failure the cluster status is indicated as orange.


During the data synchronization after the cluster setup the cluster is already operational, but not protected against appliance failures (*). The cluster status is indicated as yellow.


After successful synchronization the cluster is fully operational and prepared against a node failure (*). The cluster status is indicated as green.


(*) protected against failures means, that if one appliance fails, the other node take over the control and continue operation. This does cot cover any other kind of failures regarding to e.g. completely power loss inside the operation centre.




4.1.2.7.2 Takeover operation of a cluster node

If case you want to put the control of the cluster to the passive cluster node (e.g. hardware maintenance) you can switch the cluster state of the cluster nodes. The current active node turns to passive, the current passive one to the active node.

  1. Select Cluster Manager in the View menu.

  2. Click on the button Takeover to transfer the control to the other appliance cluster node.
    Following message box appears:

Illustration: Message box when initiating a Takeover



4.1.2.7.3 Release a cluster



  1. Select Cluster Manager in the View menu.

  2. Click on „Leave cluster“.
    Following message box appears:

Illustration: Security warning before releasing a cluster


  1. Confirm the security message with Yes.

  2. During the cluster release you can see status messages to the single process steps.

  3. If the cluster release is finished, the following message appears:


Illustration: Message box after releasing the cluster



Notice

After releasing the cluster both appliances have the same data set. Therefore only one appliance should be used for continuing operation, because otherwise emails can get sent twice.
That appliance you want to continue with must be rebooted. The other appliance should be powered off. Consider to reset this appliance to default settings before shut down
Notice that the network settings of the appliance have to be reset to your network requirements, so that the firewall and the mail server can connect to it.


4.1.2.7.4 Release a cluster if one node has a failure

If a Wen eine Appliance aus dem Cluster nicht verfügbar ist (Status Node failure), kann das Cluster nicht geordnet aufgelöst werden. Um die verbleibende Appliance in den normalen Betriebsmodus zu versetzen, gehen Sie wie auch in Kapitel 6 beschrieben, vor.

  1. Login to the appliance console.



Notice

Cluster release is not possible via a ssh console connection (e.g. putty)!




  1. Select „Cluster “ „Leave Cluster“

  2. Confirm the security message with Yes.

  3. Reboot the appliance.



4.1.2.7.5 Licenses in a cluster operation

With the setup of the cluster all licenses of the primary appliance are assigned to the cluster. If the cluster gets released later on, all licenses that have been added during cluster operation gets assigned to the primary appliance.



Notice

For a cluster operation following licenses is required:
1 cluster licenses to run a failover cluster.
1 cluster subscription license to get updates in a failover cluster.



4.1.2.8 Diagnostic Center

The diagnostic center gives the possibility to check the appliance for current or for upcoming problems. You can choose the full diagnostic check or a single diagnostic check.

  1. Select Diagnostic center from the menu View.
    Following dialog appears:

Illustration: Diagnostic center

  1. Closes the diagnostic center dialog.

  2. Starts a full diagnostic.
    Following dialog appears:

Illustration: Full diagnostics

Action

In the action log you can see each single diagnostic check.


Output

In the output log you can see detailed information of a specific diagnostic check.

Click on an action in the action area above.
You will see information as follows for e.g.:

Illustration: Diagnostic status information



  1. Start a single diagnostic:
    Single diagnostics are grouped into categories. You can run all diagnostic of a whole category or just a single check.
    Select a category out of the category list

Illustration: Diagnostic categories



Select Run all test in this category or choose a single one.

Illustration: Selection of a manual diagnostic


At the end of a diagnostic run you will see a message box as follows which indicates, if the diagnostic run was successful (without errors) or not . Refer to the detailed information in the action log if you get an error status.

Illustration: Diagnostic Status





Notice

The appliance performs a full diagnostic run each hour. In case of detected problems the administrator will be noticed by an email.








4.1.3 Language

At present, you can select between 4 different languages: English, German, Dutch and Italian.

In the menu LANGUAGE, select the desired language. All views are immediately displayed in the new language.

Illustration: Menu item "Language"



4.1.4 Appliance

In the Appliance section, you can restart and turn the REDDOXX Appliance off, set the time and date as well as save and restore the configuration.

Illustration: Menu Appliance



4.1.4.1 Restarting the REDDOXX Appliance

You can comfortably restart the REDDOXX Appliance via the REDDOXX console.

Requirement: Login to the REDDOXX Appliance.

  1. In the menu bar, click on Appliance.

  2. In the selection list, choose the entry Restart. The REDDOXX is ready for operation again in approx. 1 minute.

4.1.4.2 Turning the REDDOXX Appliance off

You can comfortably turn the REDDOXX Appliance off via the REDDOXX console.

Requirement: Login to the REDDOXX Appliance.

  1. In the menu bar, click on Appliance.

  2. In the selection list, choose the entry Shutdown.

4.1.4.3 Setting the Time/Date

Here you can match the date and the time of the REDDOXX Appliance with the current settings of the computer.

Requirement: Right settings on the computer (BIOS).

  1. In the menu bar, click on Appliance.

  2. In the selection list, choose the entry Set date / time.



4.1.5 Help

The HELP menu consists of the license information, Online Help, a link to the REDDOXX Support Center and the Start Remote Support.



Illustration: Menu Help



4.1.5.1 License Information

Adapting the License Information

Here you can manage the licenses for the REDDOXX Appliance.

Requirement: Purchase of the REDDOXX Appliance.

  1. In the menu bar, click on Info.

  2. In the selection list, choose the entry License information.
    The following view appears:

Illustration: License Information - license summary

  1. In the selection in the license summary, you obtain information about the licensee, the number of licenses and the expiration of the subscription. By clicking on Update license, the license summary is updated.

Customer Address

Here you can manage and update your address data.

Requirement: Purchase of the REDDOXX Appliance.

  1. In the menu bar, click on Info.

  2. In the selection list, choose the entry License information.

  3. Click on the tab "Customer address"
    The following fields are displayed:

Illustration: License Information - customer address


  1. Fill in all fields properly and click on click on “Select Reseller”.
    Following dialog appears:

    Illustration: License information – Select reseller



  1. Select your reseller. You have to fill out 4 characters for minimum.

  2. Click finally on „update address“.

  3. CLOSE the window

License Numbers

This is where your REDDOXX licenses and subscriptions are managed.

  1. Click on the tab "License numbers"
    The following fields are displayed:

  1. You see an overview of all entered licenses with activation and expiration information.
    To enter a new license number, enter the number of the purchased license in the field License number.

  2. To register the entered license number on the REDDOXX Appliance, click on the button ADD license.

4.1.5.2 Online Help

    By pressing the online Help (F1) key your browser will be launched and the context sensitive help pages of the manual will be loaded.

4.1.5.3 REDDOXX Support

    If you have questions to the configuration of the appliance or if you have troubles with the appliance, you call open up a support request by selecting REDDOXX Support from the help menu. Then your browser launches and will b redirected to the following page:

Illustration: REDDOXX Support

4.1.5.4 Start Remote Support

    In case of problems you can start the Reddoxx Remote Support Service to enable remote access to a Reddoxx Support agent. The appliance will establish a connection via TCP Port 80 to the Reddoxx Support Server. Over this connection the Reddoxx Support agent can log into your appliance to start further diagnostics.

  1. Select from the menu Help the option Start Remote Support.
    Now the Remote Support service starts and the following dialog appears. Confirm with OK.

  1. To Stop the Remote Support Service, select from the menu Help the option Stop Remote Support.
    The Remote Support Service now will be stopped. Confirm the dialog with OK.

4.2 Appliance Configuration

4.2.1 Network Settings

Open network settings

Requirements: The REDDOXX Appliance must be connected and in operation.

  1. In the navigation tree, double-click on Appliance configuration.

  2. In the tree, double-click on the branch Network settings.


Attention

You should make a backup before each change and archive this.
Also see: "Options in the Menu Bar"

4.2.1.1 Network Settings - General

Making the Network Configuration

Via the General Configuration, you can set up the hostname and the DNS servers.

Requirement: Opening the Appliance Configuration

  1. Click on the tab "General"
    The following fields are displayed:

Illustration: General configuration of the REDDOXX Appliance

  1. Hostname - Hostname:
    Enter any name for the REDDOXX Appliance in the network.
    The standard value can be exchanged for any name.

  2. DNS Domain:
    If applicable, enter the name of the domain belonging to the REDDOXX Appliance.

  3. DNS – 1st DNS-Server:
    Enter the corresponding IP address of your network's DNS server.


Notice

This entry is mandatory! At least one DNS server must be stated.
Ensure that the DNS server is accessible, also if the REDDOXX Appliance is operated in a DMZ.



  1. DNS – 2nd DNS-Server:
    Enter the IP address of another DNS server.

  2. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the network Configuration.
    Cancel
    : Cancels the settings and closes the network Configuration.



4.2.1.2 Network Settings - Network

Making the Network Configuration

You can set up the primary network card via the network configuration. This consists of an IP address and a network mask each. The second network card is currently not yet supported.


Notice

The configuration of the second network interface is currently not supported.



Requirement: Opening the network configuration

  1. Click on the tab "Network"
    The following fields are displayed:

Illustration: Network configuration of the REDDOXX Appliance

    LAN 1

  1. IP address:
    Enter the IP address of the REDDOXX Appliance.
    The standard values were taken over from the first settings.

  2. Net mask:
    Enter the respective network mask of the REDDOXX Appliance.
    The standard values were taken over from the first settings.

    LAN 2

  1. IP address:
    If you want to use the appliance in a failover cluster, you need to set the 2
    nd LAN interface’s IP address.

  2. Net mask:
    Enter the respective network mask of the REDDOXX Appliance.
    The standard values were taken over from the first settings.

    Bridge mode

  1. Enable Bridge mode:
    Activate the checkbox if you want to drive the box in bridge mode.
    You can find a detailed documentation inside the manual “Pop3 and Bridge mode configuration” in chapter 5.

  2. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the network configuration.
    Cancel
    : Cancels the settings and closes the network configuration.

4.2.1.3 Network Settings - Routing

Default Gateway and Routing

You can set up the default gateway via the routing configuration.

Requirement: Opening the network configuration

  1. Click on the tab "Routing".The following fields are displayed:

Illustration: Routing configuration of the REDDOXX Appliance

  1. Default gateway:
    Enter the IP address of the default gateway here.

  2. If you want to add static routes, you can do so via the button ADD.

    Illustration: Routing configuration of the REDDOXX Appliance

  1. Enter a target network, the corresponding subnet mask and a corresponding gateway. Add route by clicking on OK.

  2. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the network configuration.
    Cancel
    : Cancels the settings and closes the network configuration.



4.2.1.4 Network Settings - Time Server

Making the Timeserver Configuration

Via the timeserver configuration, you can enter the timeservers and choose the applicable time zone via the selection list.



Requirement: Opening the network configuration

  1. Click on the tab "Timeserver"
    The following fields are displayed:

Illustration: Timeserver configuration of the REDDOXX Appliance



  1. Timeserver – 1st Timeserver:
    Enter the name of the timeserver to be used.

Notice

This entry is mandatory! We recommend entering at least one timeserver that supports NTP (Network Time Protocol), as the correct time is important for the functioning of the REDDOXX Appliance. Make sure that the port 123 UDP on your firewall is opened.



  1. Timeserver – 2nd and 3rd Timeserver
    If necessary, repeat step 2.

  2. Timezone - Time zone:
    Via the selection list, select the corresponding time zone.
    Ok
    : Saves the settings and closes the network configuration.
    Cancel
    : Cancels the settings and closes the network configuration.

4.2.1.5 Cluster

    You can check your cluster settings here but you can’t make any changes here. Changes are only via the cluster manager possible.


Illustration: Cluster Settings



    Cluster enabled: shows if the cluster is setup and enabled

    Primary node: Hostname of the primary appliance

    Primary ip-address: IP address of the primary appliance

    Secondary node: Hostname of the secondary appliance

    Secondary ip-address: IP address of the secondary appliance

    Failover ip-address: IP address of the cluster.

    Click on OK or Cancel to close the dialog.

4.2.2 Bridge Policies



In the appliance configuration there is the point bridge policies. Here you can define rules to bypass IP-based stations like PC or servers. That means, the internet traffic of that specific station still goes through the appliance, but leaves untouched.


.

  1. Double-Click on Bridge Policies.
    Following dialog is displayed:



Illustration: Bridge Policies



  1. Source: is a client inside the internal network

  2. Destination: is the destination IP address

  3. Action:
    Bypass“ – Mails are not collected by the REDDOXX appliance. The POP3 poll request is sent directly to the provider (Destination IP).
    Proxy“ – Mails are collected by the appliance.



Notice

With the policies you have the possibility to combine various rules. The processing of the rules goes from top to bottom. As far as a rule matches the condition, this rule will be applied. Further rules will be ignored.
Modified rule settings gets applied only after pressing the APPLY button
in the menu bar.

4.2.3 Settings

Opening the Settings

Requirements: The REDDOXX Appliance must be connected and in operation.

  1. In the navigation tree, double-click on Appliance configuration.

  2. In the tree, double-click on the branch Settings.




4.2.3.1 Settings - General

Making General Settings

Via the General Settings, you can enter and administer the hostname and the e-mail addresses of the REDDOXX Appliance. This way, the REDDOXX Appliance can send system messages to itself or the system administrator at any time. To let the Appliance load current updates for the fuzzy filter and current virus updates, it must be able to establish HTTP connections to the Internet. If a proxy server is supposed to be used for this purpose, you can also configure this here.

Requirement: Opening the Settings.

  1. Click on the tab "General".The following fields are displayed:

Illustration: Settings – General



    E-mail addresses

  1. Appliance address:
    Enter the e-mail address of the REDDOXX Appliance.


Notice

The e-mail address of the REDDOXX Appliance must be an e-mail address of a valid e-mail domain and also received by the REDDOXX Appliance. This e-mail address may not be used for other purposes.



  1. Administrator Address:
    Enter the e-mail address of the administrator. To this email address the administrator receives messages von the appliance, e.g. when the backup was not finished correctly.

    HTTP-Proxy

  1. Use HTTP proxy:
    If there is no direct internet connection in your network, you need to use a HTTP proxy. Then activate the checkbox.

  2. Proxy address:
    Enter the name or IP address of your proxy server that enables HTTP communication.

  3. Proxy port:
    Enter the TCP port of your proxy server.

  4. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the Appliance Configuration.
    Cancel
    : Cancels the settings and closes the Appliance Configuration.

    SOCKS-Proxy

  1. Use SOCKS-Proxy:
    You also can use a SOCKS-proxy, if there is no direct internet connection available. Then activate the checkbox. A SOCKS proxy is protocol independent and so more flexible.

  2. Proxy address:
    Enter the name or IP address of your SOCKS proxy server that enables Internet communication.

  3. Proxy port:
    Enter the TCP port of your SOCKS proxy server.

  4. Proxy user:
    Enter the username to authenticate against your SOCKS proxy server, if authentication is required.

  5. Proxy password:
    Enter the user’s password for authentication against your SOCKS proxy server.

4.2.3.2 Settings - SMTP

Making the Basic SMTP Settings

Adjustments for the hostname, the SMTP server and the SMTP client services.



Requirement: Opening the Settings.

  1. Click on the tab "SMTP"
    The following fields are displayed:

Illustration: Settings – SMTP



    Common

  1. Hostname:
    Enter the corresponding hostname which the REDDOXX Appliance uses to identify itself at the beginning of the SMTP dialogue.
    This hostname consists of the hostname and the domain of the Appliance Configuration.


Notice

Enter the hostname in FQDN format (Fully Qualified Domain Name). We urgently recommend using a host name which can be resolved via a reverse DNS query (PTR entry), if no smart host (mail relay) is used.

    SMTP Server

  1. TCP Port:
    If required, adapt the TCP port for the SMTP connections of the REDDOXX Appliance.
    The default standard value is "25".

  2. Enable TLS:
    If activated, the appliance is able to receive encrypted transmissions from other mail servers. On the beginning of a mail transmission the appliance gets the decrypting key automatically from the mail sending host.

  3. Enable SMTP-Auth:
    If enabled, mails that coming from the internet can be treated as outbound mails if the connection to the appliance was authenticated with a username and password. That means, a home office co-worker can send mails via the company’s common mail server (this appliance) but without being inside the company’s network, via VPN.

  4. SMTP-Auth over TLS only:
    If enabled, the appliance forces that the SMTP-Auth connection (mentioned above) must be encrypted via TLS for security reasons.

  5. Max. invalid Recipients:
    The appliance disconnects the SMTP transmission if a peer has tried to deliver to unknown repicients, as many times as this value (threshold) is set. A “0” value disables the function.


Notice

You must restart the SMTP-Server service to activate your changed settings.

    SMTP Client

  1. Enable TLS
    if enabled, the appliance tries to send the mail encrypted with TLS first. If the other side do not understand TLS encryption, the appliances sends unencrypted.

  2. Relay host:
    Enter the e-mail relay for sending outbound emails, if you have to use one. Emails then are not delivered directly but via this relay. Prefer direct delivery if you can, but this requires a fixed IP address and a corresponding PTR record in the DNS.

  3. User Name:
    Enter the user name to authenticate against the relay host..

  4. Password:
    Enter the corresponding password.


Notice

Username and password must only be entered if authentication is required. Obtain the access data for login from your e-mail provider.Notice

You must restart the SMTP-Client service to activate your changed settings.

  1. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the Appliance Configuration.
    Cancel
    : Cancels the settings and closes the Appliance Configuration.

4.2.3.3 POP3

Activate POP3 services

  1. Click on the tab "POP3".
    Following window appears:

Illustration – POP3



Pop3 Settings

Further detailed information to POP3 and Bridge-Mode you can find inside the brief introduction under http://support.reddoxx.net/downloads.php

  1. Enable POP3 Proxy:
    Enable the POP3 proxy service, if the REDDOXX appliance should answer to POP3- requests from the internal network. The appliance listens on TCP-Port 110.

  1. Enable POP3 ProxyS (SSL):

Enable the Secure POP3 service, if the REDDOXX Appliance answers to secured POP3 requests from the internal network. The appliance listens on TCP-Port 995.



4.2.3.4 Settings - Limits

Making Limit Settings

Via the limit settings, you can set the maximum SMTP connections for incoming and outgoing emails. Additional options are timeouts for connection and e-mail sending as well as the maximum e-mail size. You can also set the maximum number of consoles, which may connect to the REDDOXX Appliance at the same time here.

Requirement: Opening the Settings.

  1. Click on the tab "Limits"
    The following fields are displayed:

Illustration: Settings - Limits

Notice

For the following settings, take over the respective valid settings in the standard value table as these depend on the variant of the REDDOXX Appliance you have purchased.



  1. SMTP - Max. Connections (incoming):
    Set the limit value of simultaneously incoming emails.
    This value defines how many incoming SMTP connections are managed and maintained at the same time. Connections coming from the internal network (trusted network) have no limitations anymore since version 1024.

  2. SMTP - Max. Connections (outgoing):
    Set the limit value of simultaneously outgoing emails.
    This value defines how many SMTP connections to other servers are managed and maintained at the same time.

  3. SMTP – Connection Timeout (outgoing):
    Set the desired connection timeout for outgoing emails in seconds. This time defines after how many seconds TCP communication without response the connection is closed.

  4. SMTP – Timeout (outgoing):
    Set the desired timeout for outgoing emails. This time defines after how many seconds outgoing SMTP communication without response the connection is closed.

  5. SMTP – Timeout (incoming):
    Set the desired timeout for incoming emails in seconds. This time defines after how many seconds incoming SMTP communication without response the connection is closed.

  6. SMTP - Max. E-Mail Size (MB):
    Set the desired e-mail size. Because of that during the data transmission a validation of the mail size cannot be done, the data always gets transferred completely. After that, the size gets limit proofed and then declined if the size limit has reached. Thereby the sender gets a negative acknowledgement during the SMTP dialogue. The email was not accepted.

  7. Console - Max. Connections:
    Set the maximum number of consoles that can connect simultaneously to the REDDOXX Appliance. In this process, admin as well as user connections are counted.

  8. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the Appliance Configuration.
    Cancel
    : Cancels the settings and closes the Appliance Configuration.

Standard Value (Recommendation):


RX-50

RX-100

RX-250

RX-750

RX-2500

Max. connections (incoming):

30

100

100

100

200

Max. connections (outgoing):

50

150

150

150

200

Connection timeout (outgoing):

30 Sec.

30 Sec.

30 Sec.

30 Sec.

30 Sec.

Timeout (outgoing):

180 Sec.

180 Sec.

180 Sec.

180 Sec.

180 Sec.

Timeout (incoming)

180 Sec.

180 Sec.

180 Sec.

180 Sec.

180 Sec.

Max. e-mail size

100 MB

100 MB

100 MB

100 MB

100 MB

Max. console connections

50

150

150

250

500





Attention

Standard values are already pre-defined in the REDDOXX Appliance. These standard values should not be changed. Only expert personnel or support may make changes here.



4.2.3.5 Settings - Queues

Making REDDOXX Appliance Settings via Queues

Via the queue settings, you can define the save and forwarding time of the outgoing queues, the CISS queues, the spam queues and the virus queues in days.

Requirement: Opening the Settings.

  1. Click on the tab "Queues"
    The following fields are displayed:

Illustration: Settings – Queues



  1. Outgoing Queue - Max. Delivery Time (Days):
    Enter the maximum delivery time of the emails in the outgoing queues in days. During this time, the system attempts to send the mail. If the mail server that is supposed to receive the mail is still not available after this defined time, REDDOXX sends the sender a corresponding message with SMTP error code and cancels the send process.

  2. CISS - Max. Save Time (Days):
    Enter the maximum save time of the emails in the CISS queues in days.
    If a CISS prompt is not executed after a defined period, the mail is deleted on the appliance and not delivered.

  3. Spam - Max. Save Time (Days):
    Enter the maximum save time of the emails in the spam queues in days.
    If the mail is not delivered manually until the expiration of the set time, it is deleted.

  4. Virus - Max. Save Time (Days):
    Enter the maximum save time of the emails in the virus queues in days.

  5. Queue Report:
    If this field is activated, a queue report is generated each day at the defined reporting time for each user whose spam or CISS queue has increased. In the user console, the user can define whether this function is desired and in which format this message is to be sent (html/text).

  6. For additional configurations, change to the next tab.
    Ok
    : Saves the settings and closes the Appliance Configuration.
    Cancel
    : Cancels the settings and closes the Appliance Configuration.

Notice

The stated standard values are our recommendations, which you may change at any time.

Check your entries from time to time and reduce the times if applicable.





Attention

After expiration of the set times, the emails are deleted irrevocably from the respective queues.
The parameters set in "Appliance Configuration – Timeserver" are decisive here, above all the set time zone.

4.2.3.6 Settings - Advanced

Making Advanced Settings

Via the Advanced Settings, you can configure the Validator, the diplay period and the dynamic blacklist filter..



Requirement: Opening the Settings.

  1. Click on the tab "Advanced"
    The following fields are displayed:

Illustration: Settings – Advanced


    Validator

  1. Use built-in profile:
    If this field is activated, the appliance uses the built-in profile, if a filter profile was not (yet) assigned to the e-mail alias, or if licenses are not (or no longer) available. For further details, see chapter Filter Profiles 4.4.2.7

  2. Max. Threads:
    This value indicates how many validations aredo ne at the same time. The value is permanently assigned and cannot be changed.


    Default display period

  1. Spamfinder list:
    This value determines how many days the initial list of the spam queue goes back into the past. The default value is 30 days. That means, all entries of that queue from the last 30 days are shown. Choose a lower value to accelerate the initial listing of a queue. Use the search function to get listed entries behind that limitation.

  2. MailDepot list:
    This value determines how many days the initial list of the maildepot goes back into the past. The default value is 30 days. That means, all entries of that queue from the last 30 days are shown. Choose a lower value to accelerate the initial listing of a queue. Use the search function to get listed entries behind that limitation.

    Dynamic IP-Blacklist

  1. Enable dynamic IP-Blacklist:
    If enabled, the email gets validated already during the SMTP link connection, if the sending IP address is blacklisted. Hereby all black list servers are used, which are referenced in the RBL filter configuration. If the sending IP address is on a black list, the connection will disconnect immediately. The advantage of this function is, that in case of massive spam attacks the appliance is not even more that under heavy load as before. A requirement for this is, that the mails gets delivered directly and not via your relay.

    The RBL black list queries are cached and viewable under Blocked IP Addresses“ (SMTP Settings). These entries are valid for one day.


Notice

For using the dynamic IP-Blacklist-Function a valid Spamfinder license is required. Detected spam is not queued. If this function is disabled, the mails still can be filtered by the RBL filter during the validation process.

  1. Ok: Saves the settings and closes the Appliance Configuration.
    Cancel: Cancels the settings and closes the Appliance Configuration.



4.2.3.7 Settings – BATV

Bounce Address Tag Validation

Another method to send spam is called bounce address spoofing. Hereby an email with a spoofed sending address (e.g. your address) is sent to a mail server with an unknown recipient. The mail server first takes over the mail and proofs the deliverability. If the recipient does not exist, the mails server bounces back the email. Due to that the sender had used your email address you will get this bounce mail which includes beside the error message the original spam.

The BATV-Function proofs an incoming email, if a corresponding email was sent out before. If not, the mail will not be accepted during the SMTP connection and also will not be queued.

  1. Click on the tab "BATV".
    Following window appears:

Illustration: Settings – BATV

    Bounce Address tag Validation

  1. Enable BATV:
    Activate this checkbox if spoofed bounce mails have to be filtered. A valid spamfinder license is required.

  2. BATV Address exceptions:

    If some local recipients do not get emails because they have been described as bounce mails accidentally, (e.g. newsletters oder mails from shop systems) exclude them here in the exception list. Enter that email address in the field and click on the button ADD. Delete this entry by marking it and then press the DEL-Key.

  1. Ok: Saves the settings and closes the Appliance Configuration. Changes are effective immediately.
    Cancel: Cancels the settings and closes the Appliance Configuration.

Notice

For using the BATV function a valid Spamfinder license is required. Detected mails are not queued inside the spam queue.

Important!
Iit is required that all outgoing mails are sent via the REDDOXX appliance.

4.2.3.8 Notification

In case of problems e.g. a failed backup or detected hardware failure the appliance can send an email to the administrator. You can configure here how the appliance should send that email notification.

  1. Click on the tab "Notification".
    Following window appears:


Illustration: SMTP-Notification



    SMTP Notification

  1. Send e-mail Notification:
    Enable this to activate sending notifications in case of problems. This service is enabled by default.

  2. SMTP target host:
    The mail server the appliance sends the notification email to. If you do not use a remote SMTP server, the appliance will send a notification via its own email engine. In case the appliance will have a problem with its own engine, the notification fails.

  3. SMTP target Port:
    The mail server TCP port the appliance is connecting to the mail server.

  4. Username:
    The user name the appliance authenticates at the mail server, if required.

  5. Password:
    The password for the user name above, if authentication is required.

Notice:

Especially when running a failover cluster you should activate the SMTP Notification service and provide a SMTP target host to get informed if a node fails.





4.2.3.9 Monitoring

The REDDOXX appliance supports system network monitoring based on the Simple Network Management Protocol (SNMP).

You can use any kind of monitoring tools unless it supports SNMP. For an example, the administrator can monitor the queue length of the incoming mails and if the value reaches a specified limit (say 500) the monitoring system sends an alert to the admin. Then the admin can for e.g. upgrade the hardware performance so that the mails are processed faster.





4.2.3.9.1 SNMP Configuration



  1. Click on the tab "Monitoring".
    Following window appears:

Illustration: Monitoring with SNMP



    SNMP

  1. Enable SNMP Monitoring:
    If activated, you can collect SNMP based monitoring data from the appliance.

  2. SNMP community:
    The authentication string to allow access to the appliance for data collection.

    System information

  1. System location:
    Some informational data for the monitoring software, were this appliance is located.

  2. System contact:
    Some informational data for the monitoring software, who is responsible for this appliance.

4.2.3.9.2 SNMP Object IDs

To monitor the REDDOXX appliance and watch for its values the administrator of the network monitoring system needs the Object-IDs.

The Root Object-ID for REDDOXX is 31581. The single messure point values (Keys) are addressed via the Object-IDs as listed in the following table.



Object-ID   

Key   

Description   

enterprises.31581.1.1.1

rdxSmtpServerConnectionsIn

Reddoxx SMTP Server Inbound Connections

enterprises.31581.1.1.2

rdxSmtpServerConnectionsOut

Reddoxx SMTP Client Outbound Connections

enterprises.31581.1.2.1

rdxSmtpServerMsgRecvIn

Reddoxx Amount of inbound messages received

enterprises.31581.1.2.2

rdxSmtpServerMsgRecvOut

Reddoxx Amount of outbound messages received

enterprises.31581.1.3.1

rdxSmtpServerBytesRecvIn

Reddoxx Amount of bytes received inbound

enterprises.31581.1.3.2

rdxSmtpServerBytesRecvOut

Reddoxx Amount of bytes received outbound

enterprises.31581.1.4

rdxSmtpServerActiveSessions

Reddoxx Number of active SMTP connections

enterprises.31581.2.1.1

rdxSmtpClientConnectionsIn

Reddoxx Amount of inbound SMTP-Client connections

enterprises.31581.2.1.2

rdxSmtpClientConnectionsOut

Reddoxx Amount of outbound SMTP-Client connections

enterprises.31581.2.2.1

rdxSmtpClientMsgSentIn

Reddoxx Amount of inbound messages sent

enterprises.31581.2.2.2

rdxSmtpClientMsgSentOut

Reddoxx Amount of outbound messages sent

enterprises.31581.2.3.1

rdxSmtpClientBytesSentIn

Reddoxx Amount of bytes sent inbound

enterprises.31581.2.3.2

rdxSmtpClientBytesSentOut

Reddoxx Amount of bytes sent outbound

enterprises.31581.2.4

rdxSmtpClientSessions

Reddoxx Current number of outgoing SMTP connections

enterprises.31581.2.5

rdxSmtpClientQueueLength

Reddoxx Messages to be sent

enterprises.31581.3.1

rdxValidatorSessions

Reddoxx Validation Sessions

enterprises.31581.3.2

rdxValidatorQueueLength

Reddoxx Validation Queue Length

enterprises.31581.4.1

rdxArchiveMsgCount

Reddoxx Archived Messages

enterprises.31581.10.1

rdxSpamfinderRecjects

Reddoxx Rejected Messages

enterprises.31581.10.2

rdxSpamfinderTagMessages

Reddoxx Tagged Messages

enterprises.31581.10.3

rdxSpamfinderCissQuarantine

Reddoxx CISS Quarantined Messages

enterprises.31581.10.4

rdxSpamfinderSpamQuarantine

Reddoxx Quarantined Messages

enterprises.31581.10.5

rdxSpamfinderSpamBounced

Reddoxx Bounced Messages

enterprises.31581.10.6

rdxSpamfinderVirusesDetected

Reddoxx Viruses Detection

enterprises.31581.10.100

rdxSpamfinderBatvHits

Reddoxx BATV Filter Drops

enterprises.31581.10.101

rdxSpamfinderAddedIpBlacklistEntries

Reddoxx IP-Blacklist Entries

enterprises.31581.10.102

rdxSpamfinderRecipientVerificationHits

Reddoxx Rejected Recipient Addresses





4.2.3.9.3 MIBs and Templates

Reddoxx provides a MIB file on its Support Center download page. This MIB file can be imported into different kind of monitoring systems. This helps in saving time for configuring every single key.

Furthermore we provide a template for the monitoring system called ZABBIX. This template consists beside the declaration of the keys and object ids already some graphical components (graphs). All keys are configured with the community string „public“.



4.2.3.9.4 Demo Monitoring System

REDDOXX provides a demo monitoring system based on ZABBIX, which monitors the REDDOXX Demo-Appliance. The public access goes via the Demo Center, which is linked in the Support Center. Visit the following internet addresses in the table with your browser.



REDDOXX Support Center

http://support.reddoxx.net/

REDDOXX Demo Center

http://demo.exmall24.net/

REDDOXX System Monitoring

http://zabbix.reddoxx.net:12080





4.2.3.10 Log

The log files are saved for a specific period of time.

  1. Click on the tab "Log".
    Following window appears:


Illustration: Log options



    Log options

  1. Log file retention time:
    Amount of days the log files will reside at the appliance before they will be deleted.

  2. Backup before deletion:
    With this option you can force that the log files must have been backed up before they will be deleted. The appliance will use the same remote share as used in the common backup

  3. Click on OK to save the settings and close the dialog.



4.2.4 SMTP Configuration

4.2.4.1 Local Internet Domains

Creating new Internet Domains

Via the Local Internet Domains, you can create new internal e-mail domains for which the REDDOXX Appliance is to receive emails.

Requirements: Login on the administrator console of the REDDOXX Appliance

  1. In the tree view at SMTP Configuration select Local Internet domains.

  1. Right-click in the list view.

  2. In the selection list, choose the entry Add.

  3. Click on the tab "Local Internet domain"
    The following fields are displayed:

Illustration: Local Internet Domains



  1. Settings - Domain:
    Enter the desired Domain for that you want to receive emails.

  2. Settings - Activate anti-spoofing:

    Here you can activate or deactivate AntiSpoofing for the respective domain.

Notice

To activate AntiSpoofing, the AntiSpoofing filter must be additionally allocated to the respective filter profiles. The function principle and how to edit filters is described in the chapter Filter profiles.

  1. REDDOXX Mail Depot – Deactivating archiving:
    If this field is set, no emails are archived in the MailDepot.

  2. For additional configurations, change to the next tab. LDAP
    Ok
    : Saves the settings and closes the Appliance Configuration.
    Cancel
    : Cancels the settings and closes the Appliance Configuration.

LDAP Settings

One of the most essential parts of the REDDOXX filter technology is the recipient check (RVC = Recipient Verify Check). Here you can set whether emails are only sent to existing recipient addresses or rejected.

For the authentication method, you can select between a company-wide directory service and the local database of the REDDOXX Appliance.

Requirements: Select local Internet domains and double-click on the domain to be configured.

  1. Click on the tab "LDAP"
    The following fields are displayed:

Illustration: Local Internet domains - LDAP

    LDAP settings

  1. LDAP server:
    Enter the IP address of the LDAP server.

Notice

In addition to the IP address, you can also state a port separated by a colon (example: 192.168.0.3:3268). If the LDAP server also has a GLOBAL CATALOG server (e.g. Microsoft Domain Controller), we recommend stating this as preference because it responds up to 10 x faster. The default for the Global Catalog is TCP port 3268.

  1. LDAP type:
    Enter the LDAP type. Available for selection are: Active Directory, Exchange 5.5, Lotus Notes Domino and OpenLDAP.

  2. LDAP Basis:
    Enter the LDAP basis. Example: dc=company, dc=com

  3. LDAP user:
    Enter the user in UPN format for authentication on the LDAP server.

  4. LDAP password:
    Enter the password for authentication on the LDAP server.


Recipient Check

  1. Activate Recipient Authentication:
    If this field is activated, the e-mail addresses are checked according to the configured LDAP interface or the locally entered e-mail addresses. This way, the REDDOXX Appliance only accepts mails that are listed in the respective directory (Active Directory, Lotus Domino, etc.) or locally.



Notice

After the recipient check was activated, the service "SMTP server" must be restarted on the REDDOXX Appliance. The service is located in the directory tree under "Appliance administration".

Further information about the LDAP configuration is available at the REDDOXX Support Center at http://support.reddoxx.net in the section MANUALS.



  1. Test method:
    You can select either LDAP or LOCAL as test method.


Autocreate user:

  1. Autocreate user:
    If this field is activated, users are automatically created upon the first receipt of an e-mail. Here the system first checks whether a user is available in LDAP for the e-mail address of the recipient. If this user exists in the LDAP, it is automatically created on the Appliance with all assigned e-mail addresses. Each e-mail address automatically receives the default filter profile in this process.

  2. Realm:
    Select the realm to be used for user authentication. You define the realm in the user administration at "Login configuration".

  3. Address collect user:
    Click on the blue field named „
    disabled“.
    Following dialogue appears:


Illustration: Local Internet domains – User address collection

  1. Disable address collection:
    Empty the checkbox and the selection box „User“ will be released.

  2. User:

Select a user from the selection list to whom you want assign all email aliases, which are not assigned to somebody right now. Especially this is helpful for all public folders and distribution list addresses. Now on all incoming Emails to a public folder address this email alias will be assigned to the selected user. After that the filter profile will be assigned to that email alias and the email will be validated. The selected user has access to his queues and can maintain the filtered mails.

  1. Ok: Saves the settings and closes the configuration.
    Cancel
    : Cancels the settings and closes the configuration.



CISS Signature

This optional signature is attached to the automatic e-mail, which the REDDOXX Appliance sends for notification. This signature must be entered separately for each domain.

Requirements: Select local Internet domains and double-click on the domain to be configured.

  1. Click on the tab "CISS"
    The following fields are displayed:

Illustration: Local Internet domains - CISS

  1. Enter any domain-specific signature.
    This optional signature is attached to the message text which the REDDOXX Appliance sends to the sender in case of a CISS challenge. It can be entered separately for each domain.

Notice

Also see: For further information about automatically generated emails, please refer to the chapter "Notifications".

  1. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Editing Local Internet Domains

Proceed as follows to edit an existing Internet domain.

Requirements: Internet domain is available in the list view.

  1. In the tree view at SMTP Configuration select Local Internet domains.

  1. Double-click on the domain to be edited.
    The configuration window opens.

  2. Make the desired changes.

  3. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Delete Local Internet Domain

Proceed as follows to delete an existing Internet domain.

Requirements: Internet domain is available in the list view.

  1. In the tree view at SMTP Configuration select Local Internet domains.

  2. Right-click on the list entry to be deleted.

  3. In the selection list, choose the entry Delete.

  4. Confirm the prompting message with Yes to delete the Internet domain.
    No: Realm is not deleted.


* Notice – Information about Recipient Authentication

With the recipient authentication, the REDDOXX Appliance tries to determine whether the recipient of the mail is being serviced by the internal e-mail server, already before forwarding the mail.

At present, the following e-mail systems are supported for this function:

Microsoft Exchange 5.5, Microsoft Exchange 2000, Microsoft Exchange 2003, Lotus Notes Domino Server

Configuration:

Backend type

Exchange 5.5

Exchange 2000 and 2003

Lotus Notes

OpenLDAP

Test method

LDAP

LDAP

LDAP

LDAP

LDAP Server

IP/hostname of the exchange server

IP/hostname of a domain controller

IP/hostname of a domain controller

IP/hostname of a domain controller

LDAP type

Exchange 5.5

Active Directory

Lotus Domino

OpenLDAP

LDAP basis


dc=company,

dc=com

(Example)


dc=company,dc=com (example)

LDAP user


UPN of the LDAP user



LDAP password


Password of the LDAP user





UPN = User Principal Name
e.g.      ldap-proxy@company.com

The user is used for the Active Directory or Lotus Domino query and must be authorized to read the attributes of the e-mail address.

Important

Exchange 5.5
Neither the basis nor the user are entered here (anonymous login).
E-mail addresses must be published in the address book.





4.2.4.2 Local Networks

Creating new Local Networks

Via the local networks you define from which host or networks emails may be sent via the REDDOXX Appliance.

Requirements: Login on the administrator console of the REDDOXX Appliance

  1. In the tree view at SMTP Configuration select Local Networks.

  1. Right-click in the list view.

  2. In the selection list, choose the entry New.
    The following fields are displayed:

Illustration: Local networks – local network

  1. Enter the local network or a single host.

  2. Single hosts, e.g. the internal mail server, require the mask 255.255.255.255.

  3. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Notice

If there is a mail relay or a firewall with an SMTP server service or a POP3 collector service before your REDDOXX Appliance, which receives the emails first, this may NOT be listed in the local networks.

Edit Local Networks

Proceed as follows to edit existing networks.

Requirements: Entries are available in the list view.

  1. In the tree view at SMTP Configuration select Local Networks.

  2. Double-click on the network to be edited.
    The configuration window opens.

  3. Make the desired changes.

  4. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Deleting local networks

Proceed as follows to delete existing networks.

Requirements: Networks are available in the list view.

  1. In the tree view at SMTP Configuration select Local Networks.

  2. Right-click on the list entry to be deleted.

  3. In the selection list, choose the entry Delete.

  4. Confirm the prompting message with Yes to delete the profile.
    No: Profile is not deleted.



Notice

Changes to the local networks require the restart of the SMPT server service.
The restart of a service is described in this document in Appliance Administration/Services.





4.2.4.3 E-mail transport

Creating new E-Mail Transport

Via the e-mail transport, you can define to e-mail server the emails of the registered domain are to be forwarded.

Requirements: Login on the administrator console of the REDDOXX Appliance

  1. In the tree view at SMTP Configuration select E-Mail Transport.

  1. Right-click in the list view.

  2. In the selection list, choose the entry New.
    The following fields are displayed:

Illustration: E-mail transport

  1. Enter the desired Domain.

  2. Enter the corresponding target server.

  3. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Notice

If the domain of an e-mail is not registered here, the target server is determined via a DNS lookup on the DNS server entered in the configuration.

Edit E-Mail Transport

Proceed as follows to edit existing e-mail transports.

Requirements: E-mail transport is available in the list view.

  1. In the tree view at SMTP Configuration select E-Mail Transport.

  1. Double- the e-mail transport to be edited.
    The configuration window opens.

  2. Make the desired changes.

  3. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Delete E-Mail Transport

Proceed as follows to delete existing networks.

Requirements: E-mail transports are available in the list view.

  1. In the tree view at SMTP Configuration select E-Mail Transport.

  2. Right-click on the list entry to be deleted.

  3. In the selection list, choose the entry Delete.

  4. Confirm the prompting message with Yes to delete the profile.
    No: Profile is not deleted.

4.2.4.4 Allowed IP Addresses

If a sending mail server is on a black list, but you still want to receive mails from that address, you can add its IP address.

Add an allowed IP Address

  1. Choose from the navigation tree view under SMTP Configuration – Allowed IP-Addresses.

  1. Click in the list view the right mouse.

  2. Choose „ADD“ from the context menu
    Following dialogue appears:

Illustration: Allowed IP address

  1. Enter the network address or a single IP address, which you want to white list

  2. Enter the corresponding subnet mask.

  3. Enter a date until this entry is valid. After that date this entry will be ignored.

  4. Enter a describing reason optionally.

  5. Ok: save the entry and exit. 
    Cancel
    : Reject changes and exit the configuration.

Notice

If the dynamic IP Blacklist function is enabled, all allowed IP addresses which matches the sending IP address gets deleted. To avoid this, you must disable the dynamic IP Blacklist function, delete the IP address from the „Blocked IP Addresses list, add the IP address under Allowed IP Addresses and restart the SMTP server.



4.2.4.5 Blocked IP Addresses

To explicitly prohibit the establishment of SMTP connections for IP addresses or complete network sections, you can enter add manually entries here. Furthermore, if the dynamic IP Blacklist function is enabled, all blacklisted mail server IP addresses gets listed here. These automatically inserted entries are valid for one day.

Creating blocked IP Addresses

Requirements: Login on the administrator console of the REDDOXX Appliance

  1. In the tree view, select SMTP configuration - Blocked IP addresses.

  1. Right-click in the list view.

  2. In the selection list, choose the entry Add.
    The following fields are displayed:

Illustration: Blocked IP address

  1. Enter the network to be blocked.

  2. Enter the corresponding subnet mask.

  3. Optionally, you can enter the reason for blocking in the field "Description".

  4. Ok to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

4.2.5 Backup and Restore

Backup Information

The backup function offers the possibility to save the complete data of the appliance automatically. In this process, all queues and configurations and the whole operating system of the REDDOXX Appliance are backed up.

4.2.5.1 Backup Settings

Setting the Network Permission

Via the permission, you can state the network path and its parameters in which the backup is supposed to be saved.

Requirement: Login on the administrator console of the REDDOXX Appliance

  1. In the tree view, select Backup and restore – Backup settings.

  2. Right-click on "Backup settings"

  3. In the selection list, choose the entry Edit.
    The following fields are displayed:

Illustration: Backup configuration – permission



    Network share

  1. Share:
    Enter the UNC path to your share where your backups will be stored.

Notice

The path is stated in UNC (Uniform Naming Convention) format: \\servername\foldername

You may not state any subdirectories.
The backup may not be saved together with another directory (e.g. Archive).



  1. Username:
    Enter the user name to authenticate against the share.

  2. Password:
    Enter the password.
    The password may not be longer than 16 characters!

  3. Domain:
    Enter the name of the domain if applicable.

    Options

  1. Do not backup log files:
    If activated, the log file will not be included by the backups.

Setting a Schedule

Here you can enter the weekdays, the time at which the backup is supposed to be started and the name of the backup file. The backup is only saved at the stated time in the previously configured UNC path if the checkbox for the weekday is activated.

Requirement: Login on the administrator console of the REDDOXX Appliance

  1. In the tree view, select Backup and restore – Backup settings.

  2. Right-click on "Backup settings"

  3. In the selection list, choose the entry Edit.

  4. Click on the tab "Schedule"
    The following fields are displayed:

Illustration: Backup configuration – schedule







Notice

You can test the connection to the server permission by clicking on BACKUPS. No error message may appear in the log view in this case.



4.2.5.2 Restore Backup

The table lists the backups written so far. To restore, you must login to the appliance console.



Notice

Since Appliance version 1021, the restore can only be performed via the Appliance Console. Also see chapter 6.2 – Appliance console - backup and restore



    Click on the navigation tree on BACKUP and RESTORE – BACKUPS. All available backup sets are listed. To restore a backup continue as described in chapter 6.2.


    If no backup sets are shown and a red error message is displayed in the live log window, check the configuration settings.


Illustration: Backup and restore – restore





4.3 Appliance Administration

4.3.1 Mail Queues

Information about Queues

In the queues, the emails wait for further processing by the REDDOXX Appliance.

Mode of Function

Also see: "Information about the services in chapter Services 4.3.7".

The Incoming and Outgoing Messages are the basic queues of the REDDOXX Appliance.

4.3.1.1 Incoming Mails

Emails accepted by the SMTP server of the REDDOXX Appliance sent internally or externally are temporarily saved in the Incoming Messages queue. Here the REDDOXX Appliance checks the emails and places them in the queues Spam, CISS, Virus or Outgoing Messages, depending on the result of the check.

You can look for emails manually in this queue and delete them. The list view shows the ID, the time received, the sender and the recipient, the size of the emails, the forwarding time as well as the result of the emails. Sorting via e-mail attributes is also possible here.



4.3.1.2 Outgoing Mails

All emails sent internally or externally by the SMTP client of the REDDOXX Appliance are placed in the queue Outgoing Messages.

For further information, see Incoming queues.

Searching for Emails

You can search for emails in the respective queues.

Restrictions: None, searching for emails is possible in all queues.

  1. Select with a double- in the tree view Mail queues or Spamfinder queues.

  2. Select the desired queue.

  3. In the menu view, click on the icon with the magnifying glass.

  4. The following fields are displayed above the list:

  1. In Search term, Sender and Recipient enter the data you know.

  2. Sorting via e-mail attributes is also possible here. To do so, click on the column header. Another reverses the direction.

  3. Search to start the search.

Deleting E-Mails

You can delete emails in the respective queues.

Restrictions: None. Deleting emails is possible in all queues.

  1. In the tree view, select Queues with a double-.

  2. Select the desired queue.

  3. Right-click on the e-mail to be deleted.

  4. In the selection list, choose the entry Delete.

  5. Confirm the prompting message with Yes to delete the profile.
    No: Profile is not deleted.

4.3.2 User Administration

Information about User Administration

In the user administration, you can manage users, local e-mail addresses, the login configuration as well as groups and policies.







4.3.2.1 Users

In the column USER, you can add, edit, delete, search and import users, as well as assign or revoke licenses and change the password.

The list view offers the following data at a glance:

Illustration: User administration - users

Adding Users

  1. In the selection list, choose the entry Add.
    The following fields are displayed:

Illustration: User Administration – User data

  1. Enter the desired user name.

  2. Enter a password.

  3. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Edit Users

Proceed as follows to import an existing user.

  1. Double-click on the user to be edited.
    The configuration window opens.

  1. Make the desired changes.

  2. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Delete Users

Proceed as follows to delete an existing user.

  1. Right-click on the user to be deleted.

  2. In the selection list, choose the entry Delete.

  3. Confirm the prompt with Yes to delete the selected user. No: User is not deleted.

Adjusting the Password

To change the password of a user do the following steps.

  1. Right-click on a user from the selection list.

  2. Choose the option: Set Password.
    The following windows appears:

Illustration: User administration – Adjusting the Password

  1. Insert the new password.

  2. Confirm the new password.

  3. Click on OK. The new password is set and the dialogue is closed. Select cancel if you do not wish to change the password.



Assign License

To assign a license to a user, do the following:

  1. Mark in the selection list one or more user, click right and choose „Assign License“. The following window appears:


    Illustration: User administration – Assign License

  1. Select from the drop down list the option Spamfinder license” or „Archive license“and click OK. The license is assigned and the window gets closed. This change is immediately effective without a restart.

Remove License

To remove a license from a user, do the same steps as before, but select in the context menu “remove license”. You can also use multi user selection.



Notice

Licenses get automatically assigned if the Spamfinder or the MailDepot is used inside the user console. Since version 1021 all licenses gets validated. If licenses have been assigned versions before, it may happen that you run out of valid licenses after a firmware version update. You will get an error message showing „Invalid license count“or „no valid license“. (See also the FAQ). Here you can remove already assigned licenses.



Import User

Proceed as follows to import a user from a list.

  1. Right-click in the list view.

  2. In the selection list, choose the entry User import.
    The following window appears:


    Illustration: User administration – user import

  1. In the menu Import, select the option Read user from file.



  1. Select the import file and click on Open. Then the following list appears.

    Illustration: User administration – user import - Import list

Notice

The import file must have the following structure:


User name,password,realm,e-mail address1,e-mail addressN

If you do not see any user on the list, check out this constrains:

- Fields must be separated by a comma.

- All fields must not be empty. (Even not the password!).

- User must be unique.


  1. In the menu Import, select save user.
    The following dialog appears:


    Illustration: User administration – user import - filter selection

  1. Select the realm and the profile to be used for the users to be imported.

  2. Once the users were successfully imported, you can close the window. The users appear in the list view.



4.3.2.2 Groups

Groups are required to control user policies. One or several users are assigned to a group.

In the list view, you see the columns Group name and Description. You can add, edit and delete groups.

Illustration: User administration – groups

Adding Groups

  1. In the selection list, choose the entry Add.
    The following dialog appears:

Illustration: User administration – add groups

  1. Enter a group name.

  2. Enter a description.

    Click on ADD to assign users to this group.
    The following dialog appears:

Illustration: User administration – add users to groups

  1. Select one or several users from the list.

  2. Click on OK to apply the user group assignment.

  3. Now Click on OK to establish the group.

Edit Group

  1. Double-click on the group to be edited.

  2. Make the desired changes.

  3. Click on OK.

Delete Group

  1. Right-click on the group to be deleted.

  2. In the selection list, choose the entry Delete.

    Confirm the prompt with Yes to delete the selected group. No: The group is not deleted.

4.3.2.3 E-mail Aliases

E-mail aliases are assigned to a user. You can add, edit or delete e-mail aliases, change the filter profile and deactivate archiving for several e-mail aliases at the same time.

In the list view, you see the columns E-mail address, filter profile, user and disable archiving.

Illustration: User administration - e-mail aliases


Adding E-mail Aliases

  1. In the selection list, choose the entry Add.
    The following fields are displayed:

Illustration: User administration - add e-mail alias

  1. Enter the desired e-mail address.

  2. Select the user allowed to manage this address.

  3. Select the desired filter profile.

  4. activate the checkbox Disable archiving if you want to avoid archiving those Emails

  5. Now Click on OK to create the e-mail alias. 


Editing E-mail Aliases

  1. Double- the e-mail address to be edited.

    The following dialog appears:

Illustration: User Administration - E-mail address

  1. User: You can assign another user to the alias.

  2. Profile: Choose another profile if necessary.

  3. Disable archiving: enable this checkbox if all Emails to this alias are not archived

  4. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Deleting E-mail Aliases

  1. Right-click on the e-mail alias to be deleted.

  2. In the selection list, choose the entry Delete.

  3. Confirm the prompting message with Yes to delete the selected e-mail address. No: The e-mail alias is not deleted.



Changing Filter Profiles

  1. Mark all e-mail addresses for which you want to change the filter profile simultaneously.

  2. Click on the list selection (right). The following dialog opens:

Illustration: User administration – changing filter profiles

  1. Select the desired filter profile.

  2. OK: All previously selected e-mail aliases receive the newly entered filter profile.



Create certificates



Requirement: The REDDOXX CA Root-Certificate must exist.



  1. Mark all email aliases for which you want to create a certificate.

  2. Right-click on the selection.
    Following context menu is displayed:

  1. Choose „Create certificate“. You can watch the live log viewer for whom a certificate was created. Already existing certificates gets overwritten.

4.3.2.4 Realm

The Realm defines, which user database is used to authenticate the users. You can define several realms to enable users to login from different systems.

The standard realm "local" uses the local user database of the REDDOXX Appliance. It cannot be changed or deleted.

You can add, edit and delete realms.

In the list view, you see the columns Name and Authentication type.

Illustration: User administration – realm

Creating a new Realm


Illustration: User Administration - Realm

  1. Enter the realm name.

  2. Via the selection list, select the authentication type. The authentication type "local" refers to the local user database of the REDDOXX Appliance.

  3. Enter the authentication server.
    The following are supported: local, Windows2000, Windows2003, Netware5, Netware6 Active Directory, Lotus Domino, and OpenLDAP.

  4. Enter the TCP port. The default port for LDAP is 389. You must enter a valid value here.

  5. If desired, activate the option Secure transmission SSL. Please note that the default port for LDAP via SSL is 636.

  6. Enter the active directory domain.

  7. Enter the BaseDN.

  8. Importing e-mail addresses
    If necessary, activate the option Import e-mail addresses in order to match the e-mail addresses for the user with the authentication server at each login.

  9. Setting primary e-mail addresses
    If necessary, activate the option Set primary address in order to match the primary e-mail addresses for the user with the authentication server at each login.

  1. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Edit Realm

  1. Double- Click on the REALM to be edited.
    The configuration window opens.

  2. Make the desired changes.

  3. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Delete Realm

  1. Right-click on the realm to be deleted.

  2. In the selection list, choose the entry Delete.

  3. Confirm the prompt with Yes to delete the selected realm. No: Realm is not deleted.

Notice – Information about Realms

The Realm defines, which user database is used to authenticate the users.

The following table indicates the supported systems and the respective function scope:


LDAP Server

User Authentication

Recipient Check

User Auto Creation

E-mail Address Import

Microsoft Active Directory with Exchange 2000+

Yes

yes

yes

yes

Exchange 5.5

No

yes

no

no

Lotus Notes Domino 6+

Yes

yes²

yes

yes²

Novell eDirectory

Yes

no

no

no

OpenLDAP

Yes

yes

yes

yes

² The following restrictions apply for Lotus Notes Domino:

Only the following e-mail addresses are rated as valid:

- Internet address
- Shortname/UserID 
- User name

The stated addresses must be clear in Lotus Domino! Double entries lead to the rejection of the mail!

With Shortname/UserID, you can skip the Internet domain. Then all Internet domains defined in the Domino server are accepted.

When importing during user login, at first only the Internet address is created as e-mail alias in the REDDOXX Appliance. The additional e-mail addresses are then generated upon e-mail receipt.



Configuration:


Windows 2000

Windows 2003

Netware 5.x

Netware 6.x

Authentication type

Windows 2000

Windows 2003

Netware 5

Netware 6

Authentication server

IP/hostname of a Windows domain controller

IP/hostname of a Netware server with LDAP service

TCP port

TCP port of the LDAP service, standard: 389 OR for Secure LDAP: 636

Secure transmission

Activate Secure LDAP here if your system supports Secure LDAP.

Active Directory Domain

AD domain e.g. company.com

Not required

BaseDN

dc=company, dc=com

e.g. o=context






Lotus Domino

OpenLDAP

Authentication type

Windows 2000

Windows 2003

Authentication server

IP/hostname of the server with LDAP service

TCP port

389 / SecureLDAP 636

Secure transmission

Activate Secure LDAP here if your system supports Secure LDAP.

Active Directory Domain


BaseDN

o=REDDOXX,dc=company, dc=com





Notice

For LDAP linkup to Novell Netware, it must be possible to read the following user attributes with an anonymous LDAP bind: dn, cn, objectClass.



Further LDAP settings are available at the REDDOXX Support Center at http://support.reddoxx.net in the column Download Center/Build1020.

4.3.2.5 Policies – Group Policies

Illustration: User administration – policies



Function Overview and Terminology

The policies help you to create rules that define the function scope of the user console. Rules are always applies on groups. This is why you must have already assigned users to groups (see chapter 4.3.2.2).

The policies define whether select functions are allowed or prohibited for one or several groups.

Examples:

- Add/delete white list entries

- Delete emails from queues



A policy contains so-called rule sets, a summary of individual functions to an umbrella term.



Rule Sets

The following rule sets are available:

- General rules

- Spamfinder rules

- Spamfinder filter list rules

- MailDepot rules

- MailSealer rules

- Deputy groups



A rule set can have 3 different statuses:

    1. Not configured

    2. Deactivated

    3. Activated



To 1.) This set of rules is not evaluated. It is ignored in this policy. The status of the individual functions remain unchanged.

To 2.) All functions of this rule set are deactivated. The following policies are no longer considered for this rule set.

To 3.) The functions of the rule set are considered individually. The following policies are no longer considered for this rule set.







Operation Sequence

If there are no policies yet or if all rule sets are not configured, the default of the options applies initially and no deputies are defined.

When a user logs on to the user console, all available policies are processed in sequence from top to bottom.

If a user is included in the group that was assigned to the policy, the rule set is no longer considered on the following policies, unless the rule set previously had the status not configured.

You can set the sequence of the policies via the context menu (higher, lower).



Configuration of the Rule Sets

  1. Open the window for processing the configuration by right-clicking on a policy in the tree menu. The following window appears:

    The following window appears:

Illustration: Policy configuration



  1. Select the desired rules set and activate it.

  2. Select the option you wish to activate.

    Group Assignment

  1. Assign this policy to a group.

Notice

Policies only always apply for the users contained in the user groups stated here.

Illustration: Policy configuration

  1. The checkbox Apply policy to all users assigns this policy to all users. This omits the configuration and administration of a group containing all users.


    Input Section Apply Policy to:

  1. ADD adds a group from a group selection list (see chapter 4.3.2.2).
    The rule set of this policy is applied to users contained in this group.

  2. DELETE removes a marked group from this policy.


    Input Section Reject Policy to:

    ADD adds a group to the group exemption list.
    The rule set of this policy is NOT applied to users contained in this group.

  1. Click on OK to save the settings.

Notice

Example: A rule set of a policy applies to all users (Apply policy to all users) with the exception of the group of administrators (reject Policy for).

Deputies

A peculiarity of the rule sets is the deputy group rule set.

Here, the administrator can assign deputies for users on holiday, for example. This gives the deputy access to the emails of the user he is supposed to substitute.

In the rule set Deputy groups, you define, which e-mail addresses can be deputized.

Notice

Deputy groups merely serve for clarity and are not connected to the user groups.

In the user group assignment of the policy, you define who may represent this e-mail address (deputy groups).

Configuration of the Deputy Groups


Illustration: Deputy Configuration



  1. Right-click on the deputy groups.

  2. Select Add deputy group.

  3. Assign a name to the new deputy group.

    With a right mouse click on the new deputy group, you can:

    3.1 Delete deputy group again.

    3.2 Renaming the deputy group.

    3.3 Adding a deputy e-mail address.

    By right-clicking on the e-mail address, you can delete it from the group again.

Notice - Exception to other Rule Sets

The list of all e-mail addresses a user may represent is compiled from ALL policies for the user group the user is assigned to.

4.3.3 Notification

Information about Notifications

Via Notifications, you can edit the standard texts of the emails sent in the respective situation.

The following standard texts can be configured:


Edit CISS Notifications

With CISS notifications, you can adapt the language, the subject and the content of the e-mail.

Restrictions: None.

  1. Select Messages in the tree view.

  2. In the list view, right-click on 'CISS'.

  3. In the selection list, choose the entry Edit.
    The following fields are displayed:

Illustration: CISS Message

  1. Via the selection list, select the desired language.
    The standard setting contains the e-mail text in German and English.

  2. Activate the option Field to activate the language.

  3. Change the e-mail at wish.

Notice

The texts with the percent signs are wildcards and may not be changed or deleted.

  1. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

CISS Message Wildcards:

Wildcard

Explanation

%SUBJECT%

Subject of the received e-mail

%CHALLENGE_URL%

URL to the REDDOXX portal

Edit Messages for Address Verification

With address verification messages, you can adapt the subject and the content of the e-mail.

Restrictions: None.

  1. Select Messages in the tree view.

  2. In the list view, right-click on 'Address Verification'.

  3. In the selection list, choose the entry Edit.
    The following fields are displayed:

Illustration: Message for address verification

  1. Change the e-mail at wish.

Notice

The texts in percent signs are wildcards.

  1. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Wildcards for Address Verification Messages:

Wildcard

Explanation

%VerifyMail%

E-mail address to be verified

%VerifyID%

ID (number) that has to be entered for verification of the e-mail address.

Edit Virus Alarm Messages

With virus alarm messages, you can adapt the subject and the content of the e-mail. You can send these messages to the administrator, the recipient and the sender.

Restrictions: None.

  1. Select Messages in the tree view.

  2. In the list view, right-click on 'Virus alarm to administrator'.

  3. In the selection list, choose the entry Edit.
    The following fields are displayed:

Illustration: Virus alarm message to the administrator

  1. Change the e-mail at wish.

Notice

The texts in percent signs are wildcards.

  1. Click on OK to save the configuration and exit. 
    Cancel
    : Reject changes and exit the configuration.

Notice

Proceed the same way with messages to the recipient and the sender.



Wildcards for virus alarm messages:

Wildcard

Explanation

%VIRUSNAME%

Name of the detected virus

%SENDER%

Sender of the e-mail

%RECIPIENTS%

Recipient of the e-mail

%SUBJECT%

E-mail subject

Notice

You can find further text options in the REDDOXX FAQ system at
http://support.reddoxx.com/otrs/public.pl?Action=PublicFAQ&ItemID=23



4.3.4 Logs

The REDDOXX Appliance generates a log file for each day. These are displayed in the list view Logs in the menu tree. These have the following file name format:

Appliance-yyyy-mm-dd_HH:MM.log (yyyy=year, mm=month, dd=day, HH=hour, MM=minute).

If the log exceeds a file size of 50 MB, a new log file is generated.



The logs can be displayed and analyzed with a special log analysis.

There are the following options to analyze logs:

Entire Log

To view the log of a specific day with the viewer, click on "Logs" in the tree view and then double-click on the desired log in the list. The following log viewer appears:



Illustration: Log view



Process ID

It is possible to filter the log information of a certain process. To do so, you have to select a specific Process ID in the viewer. The Process ID is indicated by square brackets.

Smart Filter

Due to the fact that it is often desired to filter the progress of an associated action, e.g. the mail flow of an e-mail, but this passes through different processes, you can filter the process with the help of the Smart ID. The Smart ID is enclosed in round brackets.

Function of the Filtering Process (Process/Smart)

  1. In the Log Viewer, right-click on a desired ID (Smart or Process ID).

  2. The following menu appears:

  3. Select the desired filter type.

  4. Now the Log Viewer only displays the corresponding data.

  5. To deactivate filtering, right-click on the option "Delete filters".





4.3.4.1 Filtering the live log

With version 1025 now you can filter the live log. Right click in the log window.
Following context menu appears:


Illustration: Live log filtering



Set filter

Illustration: Live log filtering settings





Process:

Enter a filter pattern. The pattern is case insensitive.


Notice

Available filter items are:

ABL-Filter, AWL-Filter, Advanced-RBL-Filter, AntiSpoofing, Archive, AutoWLAdjustment, Backup, Bayes, Bayes-Filter, BounceMail, CISS, CleanUp, Cleanup, ControlServer, DBL-Filter, DWL-Filter, Fuzzy-Filter, FuzzyStore, RBL-Filter, RVC-Filter, Report, SBL-Filter, SMTPClient, SMTPServer, SRC-Filter, SWL-Filter, SendMail, Stats, System, Validator, VirusScanner, permanently





Log text:

Insert a log text you want to filer for in the column Log.

Smart Filter:

As in Log Viewer described.



Filter process ID:

As in Log Viewer described.



4.3.5 Updates

Requesting Updates

We will inform you via email about new available updates with our release notes. The email gets send to the address you have specified under SETTINGS. You can request yourself an update by clicking on Request updates.

Requirements: none.

  1. Select Updates in the tree view.

  1. Right-click in the list view.
    The following view appears:

  1. Select the entry Request updates.

    The following message box appears:

    Depending on your bandwidth, the update should be finished after a few seconds or minutes, and appears in the list area.

Notice

If you can not see the option „REQUEST UPDATES“ you probably use an old version of the console software. Download the latest one and request the update again.

    You will see the following screen:

Notice

The anti-virus protection and anti-spam filter is updated automatically! Check whether there are enough valid licenses. The AV version should not be older than 1 to 2 days.

Installing Updates

Via the menu point "Updates", you can install updates.

Requirements: Updates available in the list.

  1. Select Updates in the tree view.

  1. Right-click in the list view.

    Illustration: Selection of an update,

  1. Choose the update you want to install out from the list view and click right.

    Following dialog appears:

    Illustration: Starting an update

  1. In the above window area you can see the release notes of the new version you are going to install. Please read them carefully.

  2. Click on Start Update to install the update. The update starts and the new firmware gets installed. Usually this takes a short while. You can follow the single steps of the update inside the log window area.

Illustration: Protocol of a firmware update.



  1. After that the update starts and the new firmware gets installed. Usually this is done in 1 – 2 minutes. When it’s done, you will see the update protocol. Have a look onto the last line if it shows that the update was finished successful. If not, refer to the FAQ section of the REDDOXX support area. (http://support.reddoxx.net)

  2. Click OK to close the Update message box.
    The following dialog appears:


  3. If an error was reported during the Update save and check the log file and search for a possible solution in the FAQ-Area of the Reddoxx Support (http://support.reddoxx.net). If necessary contact the Reddoxx Support and insert the log file into your mail.

Notice

Updates must be installed version after version in ascending order. Always read the release notes carefully.

Installation of software updates in a cluster has to be done only at the active appliance. The update will be installed automatically on the passive node.

Delete Updates

Usually the update gets removed after it was installed. You can delete it by clicking right on it and choose “DELETE”.

4.3.6 Sessions

Information about Sessions

Via the sessions, you can view all users logged into the REDDOXX Appliance.

Illustration: Sessions


4.3.7 Services

4.3.7.1 Overview

Via the services administration, you can view and control the individual services.

Illustration: Services



4.3.7.2 Mail Flow

The following diagram shows the mail flow of an e-mail:

Mail reception (SMTP server) - validation (Validator) - delivery (SMTP client):

Illustration: Mail flow diagram

4.3.7.3 SMTP Server Service

The SMTP server receives emails from other e-mail servers and saves the emails in the queue "Incoming Messages". The phase 1 filters are checked before the mails are accepted.

4.3.7.4 SMTP Client Service

The SMTP Client Service sends emails waiting for forwarding in the queue "Outgoing Messages".

4.3.7.5 Control Server Service

The Control Server services the connections of the administrator consoles as well as of the user console and serves to configure and administer the REDDOXX Appliance.

4.3.7.6 Message Validation Service

The Message Validation Service checks all emails in the queue "Incoming Messages". Here the emails are checked with the phase 2 filters and for viruses. Depending on the result of the verification, the emails are then moved to one of the following queues: viruses, spam or CISS.

4.3.7.7 Task Scheduler Service

The Task Scheduler Service starts cyclic processes, e.g. the cleanup of the queues and the update of spam and virus patterns.

4.3.7.8 Portal Communication Service

The Portal Communication Service processes emails sent by the REDDOXX portal, e.g. CISS. By encoding or decoding the emails, it takes care of safe communication with the REDDOXX portal.

4.3.7.9 Remote Support Service

The REDDOXX Remote Support Service enables better remote maintenance for the REDDOXX support without you having to change your firewall rules. The REDDOXX Remote Support Service is always deactivated and should only be started after consulting a REDDOXX support member.


4.3.7.10 Starting, Stopping and Restarting Services

Start Service

Via Services, you can start a service that is not running.

Requirements: Current status 'false'.

  1. Select Services in the tree view.

  2. Right-click on the service to be started.

  3. In the selection list, choose the entry Start.

End Service

Via Services, you can stop a running service.

Requirements: Current status 'true'.

  1. Select Services in the tree view.

  2. Right-click on the service to be stopped.

  3. In the selection list, choose the entry Stop.



Restart Service

Via Services, you can restart a running service.

Requirements: Current status 'true'.

  1. Select Services in the tree view.

  2. Right-click on the service you want to restart.

  3. In the selection list, choose the entry Restart.

4.4 REDDOXX Spamfinder

In the Spamfinder section, you make the presets for managing filter settings and the spam queues.

4.4.1 Spamfinder Queues

You will find emails that were not sent yet in one of the following queues. In all queues, you can send or delete one of the mails listed there by right-clicking. To sort the list entries, click on the desired column header. Another reverses the sorting direction. The content of an e-mail cannot be viewed due to legal regulations. Also keep in mind that emails, which you cannot find here, are already in the outgoing queue.

Spam queue

Emails listed in the Spam queue were classified as spam by the REDDOXX Appliance. In the 7th column "Filter", you see which anti-spam filter kicked in.




Notice

The e-mail is only listed in the spam queue if the action "QUARANTENE" is set for the filter.

CISS Queue

Emails whose senders are still unknown to the Spamfinder (=> not yet entered in the address or domain white list), are set to the CISS queue with activated CISS filter.

Notice

Make sure that OVERSTEERING of the negative filter CISS is activated for the filters AWL and DWL. For more details about the CISS filter technology, refer to the chapter 4.4.2.5 -Filter - CISS.

Viruses and prohibited File Extensions

Emails with viruses in attachments or attachments with prohibited file extensions are sent to the virus queue. Zipped file extensions are also checked for viruses if they are not encrypted.

Notice

Only the administrator can view and manage the virus queue.



The queues can be searched and deleted.

Also see: "Appliance Administration - Mail Queues".

Send E-Mail

You can send emails to the recipient in the respective queues.

Restrictions: E-mail forwarding is only possible in the queues Spam, CISS and Viruses.

  1. In the tree view, select Queues with a double-click.

  2. Select the desired queue.

  3. Right-click on the e-mail to be sent.

  4. In the selection list, choose the entry Send.

Send E-Mail (White list)

In the respective queues, you can send emails to the recipient and enter him in the White list at the same time.

Restrictions: E-mail forwarding is only possible in the queues Spam and CISS.

  1. In the tree view, select Queues with a double-click.

  2. Select the desired queue.

  3. Right-click on the e-mail to be sent.

  4. In the selection list, choose the entry Send (white list).

Sorting E-Mails

In the respective queues, you can sort emails via the column head in the list view.

Requirement: Emails available in the list.

  1. In the tree view, select Queues with a double-click.

  2. Select the desired queue.

  3. Double-click on the column head according to which you wish to sort your emails.
    Sorting takes place alphabetically.

4.4.2 Filters

Information about Filters

Contrary to concentrating on what's not desired, the REDDOXX Appliance filters out the emails the user wants to receive. Therefore the technology is based on the most modern and innovative filter techniques.

The sequence of different filter technologies can be configured individually and also be made available individually to the users via different profiles.

How E-Mails are filtered

Illustration: Filter scheme

4.4.2.1 White list Filters

Whitelists are so-called friendly lists, and inasmuch as certain criteria are fulfilled, the emails are forwarded directly without delay. These lists vary from individual e-mail addresses up to general domain addresses. They may contain individual IP addresses or IP address ranges or simply certain subject contents that classify an e-mail as "desired". In the REDDOXX Spamfinder, these lists were implemented as follows:

These filter lists are available to all users of a system on a general basis but also for individual users in order to perfect the accuracy of the REDDOXX Spamfinder.

White list Auto-Add Adjustment

The Whitelists are automatically supplemented as soon as a user sends an e-mail. This happens so that the answers to these emails are classified as "desired" and therefore forwarded.

Notice

To use the auto white list function, the outgoing mail traffic must also be routed via the REDDOXX Appliance.



4.4.2.2 Blacklist Filters

Emails from certain domains, IP ranges, e-mail addresses or with certain subject content can be filtered out by the integrated Blacklist technologies. The administrator can create these lists company-wide and users can additionally maintain them.

However, the Blacklist filters of the REDDOXX Spamfinder are also based on external, public lists. A general problem of these filter techniques is the risk of wrong detection (so-called false positives).

The integrated user quarantine function of the REDDOXX Spamfinder reduces the risk of false-positives, because each user has the possibility to access his quarantine section and make sure that it does not contain emails, which don't belong there.

This also reduces the administrators' efforts to look for important emails among the spam.

The Blacklist filters integrated in the REDDOXX Spamfinder are:

On the basis of external servers, the following filters are also available:



4.4.2.3 Content Filters

SWL: Subject White list, SBL: Subject Blacklist and Bayes Filter

Content filters like the Bayes Filter are adapted to each user and also adapt to changes in spam. In order to detect emails as spam, these filters use Bayesian check sums to check the words and sentences of an e-mail with respect to their frequency for spam probability. Previous emails serve as comparison (spam and desired mails). The architecture of the REDDOXX Spamfinder's content filters refers to the CISS method, which first takes over the information of the content filters into the database when the CISS was passed successfully.



4.4.2.4 Global Filters

Antivirus Filter

As a comprehensive security system for emails, the REDDOXX Spamfinder Appliance also contains an integrated virus protection for your e-mail server. In order to highlight the quality standards of the filters, we use ClamAV which is open source software.



RVC: Recipient Verify Check

The RVC filter already checks upon acceptance of the e-mail (SMTP server dialog), whether the recipient address is known at all on the target system. If not, receipt is already denied during the send attempt. This prevents spam attacks on non-existent mailboxes without impairing the performance of your e-mail servers. The acknowledgement is: 550 Recipient not accepted (Unknown recipient: <xxxx@domain.tld>).





4.4.2.5 CISS

The Innovation of the REDDOXX Spamfinder Appliance is called CISS

CISS (Confirmation Interactive Site Server), is a unique, several stage control process, which ensures the permanent exchange of wanted mails between sender and recipient.

Stage 1: E-mail receipt, check for viruses through anti-spam filter and temporary saving. Dispatch of a response e-mail to the sender with the request for authentication at the stated link.

Stage 2: Request to perform a certain action on the Internet page, which can only be performed by a person, not by spam robots.

Stage 3: Feedback from the portal to the REDDOXX Spamfinder about the successful authorization and automatic forwarding of the e-mail to the recipient.



How does CISS work?

Illustration: CISS diagram



Known sender sends e-mail:

  1. A customer or business partner sends you an e-mail.

  2. The REDDOXX Appliance checks this e-mail with respect to viruses, worms, Trojans and of course, also whether this is a spam mail.

  3. After this check, the e-mail is forwarded to you immediately.

Unknown sender sends e-mail:

  1. An unknown person writes you an e-mail.

  2. The REDDOXX Appliance checks this e-mail with respect to viruses, worms, Trojans and of course, also whether this is a spam mail. Because the sender is unknown, the e-mail is saved temporarily. The Spamfinder generates an e-mail to the sender with the request for the one-off authentication at the stated link.

  3. On this Internet page, the sender is asked to perform a certain action, e.g. click on a certain part of an image.

  4. Such actions can only be performed by persons and not automatically.

  5. This action generates a reply to the REDDOXX Appliance about the successful authentication of the sender.

  6. The saved e-mail is directly sent to you and now there is nothing in the way of your new business transaction!

4.4.2.6 Filter Settings

You can configure the individual filters via the filter configuration.



Illustration: Navigation Tree – Filter settings

Common Filter Configuration

    In the tree view, double-click on Filters - Filter settings.
    The following fields are displayed:

Illustration: Common filter settings



  1. Disable non-delivery report:
    Usually a NDR report sends back an email to inform the sender about that issue. Tricky spammers use this method to transport spam. Disable this option, if you do NOT want to inform a sending mail server that an unknown recipient is not in your domain. This also prevents floating your outgoing mail queue with undeliverable NDRs.

Realtime Blacklist Filter Configuration

The Realtime Blacklist Filter is a DNS Blacklist Filter. The Advanced Realtime Blacklist Filter is an Extended DNS Blacklist Filter. You can configure the Advanced Realtime Blacklist Filter as follows.



    Change to the TAB RBL-Filters
    The following fields are displayed:

Illustration: Filter configuration - Realtime Blacklist Filter

  1. Enter a blacklist which the corresponding filter is supposed to query.

  2. With the button Add, add the blacklist to the list.

  3. With the button Add, add the relays you trust within your mail flow. You can obtain the name of the relay e.g. from the header of a mail (e.g. mail.company.net).

Illustration: Header of an e-mail

  1. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.





Auto White list Adjustment Configuration

This filter adds the recipient of the outgoing emails to the sender's Address White list.

  1. Select the tab Auto white list adjustment.
    The following fields are displayed:

Illustration: Filter configuration – Auto white list adjustment

  1. If required, activate this filter.

  2. Enter the desired validity in days.

Notice

Whitelists should be valid for at least 90 days.

  1. To prevent that the sender address of a spam sender is entered in the white list due to an automatic response of your mailbox, you can deny the white listing of any subjects, e.g. holiday, absence (out of office), etc. To do so, enter a part or the entire subject into the subject exclusion field. This setting applies globally for all users.

Notice

The recipient of the outgoing emails cannot be configured for AutoResponder; use the exception function for this purpose.

  1. With the button ADD, add the exception to the list.
    With the button DEL, you can delete any exception already entered again.

  2. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Virus Scanner Configuration

In the configuration of the virus scanner, you can set to whom the notifications are sent. Here you can also state file extensions for attachments that are not allowed to pass.

Restrictions: Only the Virus Scanner can be configured the following way.

  1. Select the tab Virus scanner.
    The following fields are displayed:

Illustration: Filter configuration – Virus Scanner

  1. Activate the target person(s) that are supposed to receive a notification.

  2. Enter the file extension to be blocked (e.g. .exe) and click on Add.

  3. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Notice

Please make sure that the entry of the file extension starts with a dot (.).





CISS Filter Configuration

With the CISS filter configuration, you can set the validity of the white list in days and the maximum challenges per sender. Challenges are the attempts of the sender to send an e-mail to the recipient for the x-th time (here: 3 times) without receiving a response from the recipient.

Restrictions: Only the CISS Filter can be configured the following way.

  1. Select the tab CISS filter.
    The following fields are displayed:

Illustration: Filter configuration – CISS Filter

  1. State the desired validity of the CISS Filter white list in days. The default value is 365 days.

  2. Enter the maximum challenges per sender. The default is 3.

  3. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Bayes Filter

In the Bayes filter configuration, you can delete the Bayes database and activate/deactivate the automatic training of the filter


  1. Select the tab Bayes filter.
    The following fields are displayed:

Illustration: Filter configuration – Bayes filter

  1. The status contains the number of mails that serve as basis for the Bayes filter. The system distinguishes between spam and undesired mails. The physical size of these mails is additionally displayed in the database.

  2. Activate automatic training:
    Before you apply the Bayes filter, you should train it for approx. 1 week first. In doing so, the filter learns which mails are desired or undesired by using Whitelists and blacklists and constructs its database accordingly using the contents.

    For details about the functioning of the Bayes filter, see the chapter "Filter settings".


  3. Emptying the Bayes database:
    Due to initial configuration errors of the REDDOXX Appliance or wrong entries in the blacklists and Whitelists, it may happen that the Bayes filter classifies contents as SPAM and takes them over into its database and therefore reports desired mails as spam or does not detect undesired emails. In this case, you should check the configuration of the REDDOXX and the blacklists/Whitelists. Then you can empty the database and re-establish it (= training).

Notice

After one week of training the Bayes filter, both values for the spam emails or the number of desired mails should show positive figures. The larger the two values are, the more exact the filter is going to work. Should the database become too large at one point (depends on the hardware equipment of your REDDOXX Appliance), this may impair the processing speed. In such a case, you can empty the database and retrain it. You should first train the filter before you using as an active filter.





Fuzzy-Filter

The Fuzzy Filter mostly works full automatically. Only when sending massively Emails like newsletters (=bulk), it can results in so called „False Positives“.

  1. Choose the tab Fuzzy Filter.
    Following fields are displayed:


Illustration: Filter configuration - Fuzzy Filter

  1. Disable bulk detection:
    Enable this checkbox if massively Emails (e.g. newsletters) were detected as spam by accident.



4.4.2.7 Filter Profiles

The core of the Spamfinder is its filter profiles. Here you can enter filter rules according to your spam frequency.

You can also create new profiles, change available profiles, copy and also delete them.

Here you define which filters are allocated to a profile and which profiles are to be available to the user for selection. Both the administrator as well as the user (if authorized) can add filter profiles to e-mail aliases.



Illustration: Filter Profiles


Pre-defined Filter Profiles

The REDDOXX has 4 pre-defined filter profiles. In the basic configuration, they always contain the positive filters DWL, AWL and SWL.

Default Filter Profile

Initially, the default profile contains the filters FUZZY, RBL, ARBL, DBL, ABL, SBL, SRC.

With automatic user and e-mail alias creation, the default profile is always assigned first. Set this profile in such a way that it meets the requirements of most users in your company. The automatic e-mail alias generation with automatic assignment to the default filter profile significantly reduces the administration extent.

Quarantine Filter Profile

Initially, the quarantine profile contains the filters FUZZY, RBL, ARBL, DBL, ABL, SBL, SRC and BAYES. You can adapt this profile in such a way that it corresponds to the requirements deviating from the default profile.

The actions of most of these filters are set to quarantine. Bayes and SRC are set to "Mark".

Strong Filter Profile

The strong filter profile contains the filters FUZZY, RBL, ARBL, DBL, ABL, SBL, SRC and CISS. This profile is intended for users that want an immediate and reliable spam protection. This is ensured by the CISS filter.

Built-In Profile

The built-in profile is used if no filter profile was assigned to the e-mail alias yet. Prerequisite is the general activation of the profile (see chapter 4.2.3.6). It cannot be changed. It signals the administrator that the REDDOXX is in operation but not sufficiently configured, or that there are generally no licenses or not for this user. The built-in profile only contains the filters RBL, ARBL and FUZZY. Detected SPAM emails are marked with the tag [REDDOXX Spamfinder]. A deviating tag is not possible.





Creating a new Filter Profile

Requirement: None.

  1. Select Filter Profiles in the tree view.

  2. Right-click in the list view.

  3. In the selection list, choose the entry Add.
    The following fields are displayed:

Illustration: Filter profiles – Tab "General"

Notice

The profile name is displayed alphabetically in the list view. You can define your own sorting sequence by prefixing numbers or group codes.

  1. Enter the name of the profile in the profile options.

  2. Activate the option Available to user, if you also want to make the filter profile available to the users. Then the users can select this filter profile for their e-mail addresses in the user console.

  3. Import or export filter profiles, if applicable.

    Export your desired filter profiles to be able to import it to another REDDOXX Appliance (e.g. at a subsidiary).

Filters

Different filters can be selected and compiled according to priority.

Requirement: None.

  1. Click on the tab "Filter"
    The following fields are displayed:

Illustration: Filter profiles – Tab "Filter"

  1. Positive filter -Selected:
    All active positive filters are listed in the field Selected. You can change the sequence of the filters with the vertical arrows. To do so, mark the desired filter and click on the corresponding button. You can change the sequence of the filters with the vertical arrows.
    Sequence: from top to bottom, top first.

  2. Positive filter -available:
    All available positive filters are listed in the field Available. Via the horizontal arrows, you can add the available filters to the list of selected filters and vice versa. To do so, mark the desired filter and click on the corresponding button. You can change the sequence of the filters with the vertical arrows. Sequence: from top to bottom, top first.

  3. Negative Filters:
    The same as for the positive filters (point 2-3) applies for the fields "Selected" and "Available". In addition, you can assign 3 different actions to the individual negative filters. To assign or change an action, double-click on a filter. The following window appears:

Illustration: Filter profiles – Tab "Filter" - action

  1. Tag: A tag is a text that is prefixed to an e-mail in the subject field if the desired action MARK is selected. Other actions do not change the subject.

  2. Action: In this selection list, you can choose between 3 actions:

    1. Mark: Marks the e-mail in the subject field with the entered tag. The tag is prefixed to the subject and the e-mail is sent.

    2. Quarantine: The e-mail is shifted to the protected quarantine directory and not sent to the recipient. All emails in quarantine are located in the Spamfinder queues.

    3. Reject: The e-mail is rejected and not sent to the recipient. The sender receives a bounce e-mail.

Notice

If several negative filters kick in, the action with the strongest weighting is triggered.

Weighting sequence: MARK (light) - QUARANTINE (medium) - REJECT (strong).

With the anti-spoofing filter, make sure that the marking is not set to REJECT. Otherwise a bounce e-mail is generated that may be sent to you because your address was stated as sender.

Filter Sequence

The filter sequence is defined by the performance relevance and the false positive rate of the filter.

The selected negative filters are applied from top to bottom. If the action REJECT is triggered with a filter, no other filters are processed:

Filters

Action

Anti-spoofing

Quarantine

Fuzzy

Quarantine

RBL

Quarantine

Advanced RBL

Quarantine

SBL

Mark

ABL

Mark

DBL

Mark

SRC

Mark

Bayes

Quarantine

CISS

Quarantine

Illustration: Recommended filter sequence

Overriding Filters

If expressively desired emails (white list entry) are to be forwarded without further checking for SPAM relevance, the negative filters must be override by the respective positive filters (DWL, AWL, SWL). The ANTISPOOFING filter is an exception here.

Requirement: None.

  1. Select Filter Profiles in the tree view.

  2. Right-click on a profile in the list view.

  3. Click on the tab "Override"
    The following fields are displayed:

Illustration: Filter profiles – Tab "Override"

  1. Select, which positive filters overrides the negative filters. If a negative filter is overridden by a positive filter, the negative filter no longer has any relevance.

Notice

Especially with the CISS filter, the AWL filter MUST overrides the negative filter CISS, otherwise the CISS challenge is generated each time.

  1. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Edit Filter Profile

Here you can edit already created filter profiles.

Requirement: Created filter profile is available.

  1. Select Filter Profiles in the tree view.

  2. Right-click on the filter profile to be deleted.

  3. In the selection list, choose the entry Edit.

  4. Make the desired changes.

  5. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Copy Filter Profile

Here you can copy already created filter profiles.

Requirement: Created filter profile is available.

  1. Select Filter Profiles in the tree view.

  2. Right-click on the filter profile to be copied.

  3. In the selection list, choose the entry Copy.

  4. Double-click on the filter profile with the addition (copy).

  5. In the profile options, enter the name of the new filter profile.

  6. Click on OK to save the configuration and exit.
    Cancel
    : Reject changes and exit the configuration.

Delete Filter Profile

Here you can delete already created filter profiles.

Requirement: Created filter profile is available.

  1. Select Filter Profiles in the tree view.

  2. Right-click on the filter profile to be deleted.

  3. In the selection list, choose the entry Delete.

  4. Confirm the prompting message with Yes to delete the profile.
    No: Profile is not deleted.





4.4.2.8 Blocking and Admitting

Blocking and Admitting (Blacklists and Whitelists)

The following points apply for all lists described below:



- Global or user-related:

The settings for the black and Whitelists in the administrator console apply globally, meaning for all users. If there are applicable black/white list entries for the user as well, these take precedence over the global settings. Therefore it may be that a global block is on REJECT, but the user has set the block to MARK. Fact is: The user always wins!

The following applies for all blacklists: The action selected for a block applies. The setting in the filter profile itself is of no relevance.



- Validity date: