Sophos Email customers using IP-based mailflow rule connectors must migrate to certificate-based configuration by March 31st. To see if you're affected Click Here.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Microsoft 365 Defender grabbing too many emails

My connector from sophos to M365 broke last month. I got it fixed but not M365 defender is grabbing a ton of emails under the "Anti spam" policy. I cant seem to see where its going wrong. has anyone had these problems?



This thread was automatically locked due to age.
Parents Reply Children
  • It’s happening for me as well, and I assume there’s other cases open that aren’t posting in these forums. It would be good for Sophos to find a solution ASAP and post it here publicly so people know how to fix it. At the moment, Microsoft is filtering SPAM, not Sophos, so we’re paying for something that’s not doing anything.

    Sophos is the only SPAM provider that I’ve used that uses MS rules. Every other provider has the MX records point at them directly before forwarding to Microsoft. If the issue here is Microsoft related, it would make more sense for Sophos to co-ordinate with Microsoft directly to identify the issue and come up with a solution rather than every Sophos customer logging calls behind the scene individually.

  • Hello Kayzee,

    I don't see a case attached to your account for this issue. Can you share the Case ID?

    Regards,


     
    Emmanuel (EmmoSophos)
    Technical Team Lead, Global Community Support
    Sophos Support VideosProduct Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.
  • Please make sure you see SCL -1 in the headers - for example: 

    X-Forefront-Antispam-Report: CIP:198.154.181.194;CTRY:US;LANG:en;SCL:-1;SRV:;IPV:NLI;SFV:NSPM;H:mfid-