
84 Barracuda Spam Firewall Administrator’s Guide
Enforce RFC 821 Compliance Whether the Barracuda Spam Firewall requires that the SMTP "MAIL
FROM" and "RCPT TO" commands contain addresses that are
enclosed by ‘<‘ and ‘>’. It also requires that the SMTP "MAIL FROM"
and "RCPT TO" commands do not contain RFC 822 style phrases or
comments.
Setting this option to Yes stops messages sent from spam senders but
also from some Windows mail programs (such as Microsoft Outlook)
that do not adhere to the RFC 821 standard. For this reason, the
default setting is No.
Require Fully Qualified
Domain Names
Whether the Barracuda Spam Firewall requires fully qualified domain
names.
Reject Fake “From” domains Whether the Barracuda Spam Firewall rejects e-mail sent from
domains that do not have an entry in DNS.
Sender Spoof Protection
(inbound mode only)
Whether the Barracuda Spam Firewall prevents outside individuals
from sending e-mail using this domain as the “from” address. Setting
this option to Yes blocks all e-mail addressed from a domain for which
the Barracuda Spam Firewall receives e-mail.
You should only enable this option if all mail from your domains goes
directly to your mail server and not through the Barracuda Spam
Firewall.
SPF/Caller ID Configuration (inbound mode only)
Sender Policy Framework/
Microsoft SenderID
Framework:
SPF (Sender Policy Framework) and Microsoft SenderID Framework
are checks that can help the Barracuda Spam Firewall distinguish
between spam and legitimate messages.
Enabling this feature impacts the performance of the Barracuda Spam
Firewall due to the multiple DNS queries needed to retrieve a domain's
SPF or SenderID record (if it exists). Turning on this option causes
messages that fail this test to be blocked. The default setting for this
setting is No.
How SPF works
Domain owners identify the addresses of their sending mail servers in
DNS. When an SMTP receiver (like the Barracuda Spam Firewall) gets
a message, it checks the sending mail server address contained in the
message against the domain owner’s DNS records. If this check does
not find a record for the sending mail server, the message is assumed
to be spam.
Trusted Forwarder IP The Trusted Forwarder IP address is a list that contains the IP
addresses of any machines that you have set up to forward e-mail to
the Barracuda Spam Firewall from outside sources.
The Barracuda Spam Firewall ignores any IP address in this list when
performing SPF/SenderID checks. Instead, the next IP address in the
Received headers list is tried.
Incoming SMTP Timeout
Table 7.1:
Comentários a estes Manuais