This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Problems with preventing spoofing but allowing Zendesk

I want to refuse unauthorized email that has a from address @mydomain.com.  The only way I've come up with to do this is to have a sender blacklist of *@mydomain.com.  This has worked well until now because I need to receive email from Zendesk and the from address needs to be @mydomain.com.  This normally wouldn't be a problem; I would add the additional SMTP server to the Host-based relay whitelist.  But in this case Zendesk uses Gmail to send email and I guessing quite a few spammers do too.  Is there a better or more elegant way to solve this than whitelisting all the Gmail servers to open relay?


This thread was automatically locked due to age.
Parents
  • OK.  There's no change you need to make in the UTM except that you might want to disable the BATV check.  In public DNS, make sure that your SPF record, if you have one, also lists those used by Zendesk.  

    Cheers - Bob
    PS Actually, adding an SPF record should solve the problem that led you to blacklist your own domain.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • OK.  There's no change you need to make in the UTM except that you might want to disable the BATV check.  In public DNS, make sure that your SPF record, if you have one, also lists those used by Zendesk.  

    Cheers - Bob
    PS Actually, adding an SPF record should solve the problem that led you to blacklist your own domain.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data