Sophos Email customers using IP-based mailflow rule connectors must migrate to certificate-based configuration by March 31st. To see if you're affected Click Here.

Email To/From Microsoft Distribution Lists failing

My organization uses Microsoft 365 with Sophos Central Email Security as the email filter.  The DLs contain both internal and external email addresses, such as Gmail or Yahoo. When I send email from an internal address to the DL, everything gets delivered.  When an external address sends to the DL, the internal addresses receive but the external addresses fail.

I cannot see any error messages from within Sophos.  The external reject message is

Error:

550 5.7.1 XGEMAIL_0011 Command rejected

Message rejected by:

mx-01-us-west-2.prod.hydra.sophos.com

This is a problem for my organization.  Any tips/help?



Added TAGs
[edited by: Raphael Alganes at 12:57 PM (GMT -7) on 17 May 2024]
Parents
  • From the sounds of it you are in gateway mode. In gateway mode Sophos Central does not any list of recipients contained inside the DL so when the message for external users is sent we reject since we aren't a relay. In MFR mode, since the message goes to M365 first, Microsoft will unpack/expand the DL and route individual messages to Sophos for inspection and then if permitted in M365 it will deliver to the external recipients.

Reply
  • From the sounds of it you are in gateway mode. In gateway mode Sophos Central does not any list of recipients contained inside the DL so when the message for external users is sent we reject since we aren't a relay. In MFR mode, since the message goes to M365 first, Microsoft will unpack/expand the DL and route individual messages to Sophos for inspection and then if permitted in M365 it will deliver to the external recipients.

Children