We have a pair of Sophos Virtual Email Appliances, clustered, and we use Directory Services to connect to Active Directory and synchronize our customer mailbox accounts. We recently had a customer want to change the format of their email addresses from having an underscore (j_doe@domain.com) to not having an underscore (jdoe@domain.com), so we fulfilled their request. Later we found out that because the end user allow / block lists AND the end user login (connected to Active Directory / using Directory Services) are tied to the default email address on a mailbox, when that address changes, the end user allow/block lists are essentially lost to the user, since they can no longer log in with their old email address so they can access their lists / quarantine, and because those allow/block lists are no longer applying to their mailbox, because they are tied to the old email address.
This is something that the appliances should be able to handle better. The appliances are already aware of all the aliases on a mailbox (we are using the map aliases feature), so why could the appliance not also automatically associate the new default email address (and all additional email aliases on the mailbox) so that when the default address on a mailbox changes, the users don't lose their settings, AND so all of their email addresses are protected by their allow/block lists? Also, the user should not lose their quarantined items just because their default address changed.
I was able to 'work around' this issue in a way, because I was able to take a backup of the configuration and then drill down into the files and search by their domain to find the files for the users that did have individual allow / block lists. However, all I could do with that was forward the files to the customer and let them distribute the files to their users so they can log in and add the addresses back manually if they want. It seems like quite an inconvenience to the end users. I couldn't do anything about the fact that they also lost access to their quarantined messages, if they had any.
Thank you for your time. :)
Tara D.
This thread was automatically locked due to age.