Sophos Email customers using IP-based mailflow rule connectors must migrate to certificate-based configuration by March 31st. To see if you're affected Click Here.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Converted esisting Email security to Mailflow with MS365

We've successfully setup Mailflow for our MS365 domain. We used the "copy existing MS365 Domains and Policies" and confirmed.

Mailflow seems to be working correctly after testing. All looking good. However I am curious what to do with the existing DNS settings that we've configured at our 3rd party DNS hosting for the old situation.

What happens to existing created records that are still pointing to the SOphos Hydra servers?

- MX

- SPF 

DO these servers need to be removed and MX reverted back to the initlal MS365 DNS from Microsoft?

I  have a hard time finding out if anything in DNS config is neccesary to revert or not.



Added tags
[edited by: Raphael Alganes at 6:08 AM (GMT -7) on 7 Jun 2023]
Parents Reply Children
  • those are likely servers that have cached the old mx and or are configured directly pointing to the old record. They should clear up over time, if not you will need to investigate and if they are servers/applications under your control change the mail host or smarthost entry. If they are from external senders they will update cache over the next couple days, although it should be sooner propagation can take up to 72 hours for some DNS providers.

  • All is OK now.

    All messages are now using MAILFLOW. 

    Thanks for the assistance Tom!

  • I get a warning that I need to deactivate my gateway connection, yet when I go to my global domain settings under mailflow connection I just see the ability to disconnect that. Is this the same thing as disconnecting my gateway? If it is why is it called 2 different things? I just don't want to disconnect the wrong thing and have email go down for 250 people.

  • Well this worked out about as well as I expected.

  • In what way Doug, Sorry I was out on PTO and business travel the last couple weeks. You should always create a support case if you need immediate response. In the UI you should have seen an X (all the way to the right) where you could delete the connection vs just disconnecting. It would not be under Mail Flow but under Settings > Domain Settings/status, those are the connections to remove IF you have Mailflow working correctly.