Setting Up Your Outbound Email
Configure ESG for Outbound Email
Your email server can be configured to route outbound emails through LibraCyber ESG. This requires you to authorize your internal mail server for the relay.
Please ensure that:
- The Mail Server IP address (as seen by LibraCyber ESG) is added to ESG Trusted Networks or an SMTP Authentication is configured.
- The firewall is configured to allow access to ESG IP Address for SMTP port 25.
Connect to your LibraCyber ESG Web portal and login as an administrator. Select "Admin Area -> Mail Transport -> Relay Configuration → Trusted Networks" and click New, then add the public IP address of your mail server:
Click Apply Settings
At this point, your LibraCyber ESG will do a relay for all emails originating from your server.
Configure Reverse DNS
Mail Servers are required to have valid Reverse DNS (PTR) records to reliably deliver emails. Failing to do so, may result in messages being refused as Spam by remote domains.
The Public IP used by LibraCyber ESG must associate a single hostname, which will resolve to the very same IP as before.
Example values for ESG PTR records:
| Name/Host/Alias/IP | Record Type | Value/Answer/Destination | Notes |
|---|---|---|---|
| 1.2.3.4 | PTR | esva.example.com | REQUIRED |
| esva.example.com | A | 1.2.3.4 | REQUIRED |
| alias.other-domain.test | A | 1.2.3.4 | Valid way to add aliases |
NOTE: The hostname published must be the same used by LibraCyber ESG to greet the external Mail Server. If the public hostname is the same used internally by LibraCyber ESG, this is already the case. Otherwise, access “System → Mail Transport → MTA Advanced Configuration” and set “SMTP Banner → My Hostname” accordingly.
Anti-Spam filter configuration
The next step is to decide if you want to scan outgoing emails for spam or not. Please note that antivirus and filename rules are always in place, even if you decide to not analyze outgoing traffic for spam to avoid any false positives on outgoing traffic (suggested).
If you want to scan outgoing emails for spam, verify under menu Lists that your internal mail server is not present. In case you find it as the startup wizard adds it automatically, please remove its entry.
To avoid spam checks on outgoing emails, cross-check you have whitelisted your email server address under menu Lists.
Admin Area -> Content Analysis -> Whitelist & Blacklist -> New:
WARNING: If you currently use SPF records for your domains, ensure you include the LibraCyber ESG IP address in your DNS SPF record.
Mail Server Configuration
Office 365
You can specify LibraCyber ESG as the outbound mail gateway through which all mail is sent from your domain via your Office 365 account to the recipient.
For more information: How to Configure LibraCyber ESG for Office365
On-Premises Environments
Routing your outbound mail to LibraCyber ESG in Exchange is accomplished through the creation of a send connector.
For more information on how to configure SMTP connectors, see the followings: Configuring Microsoft Exchange Send Connector Configuring Domino to send mail to a relay host or firewall