Settings of mutual account reports (Administrator Access) ................. 37 VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 3
Results of the configuration .......................... 68 VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416 10C 1V2 01/11 FR...
The aim of this manual is to explain how to operate physical and virtual MailCube appliances, how to integrate them into your messaging system and how to customize them accordingly.
Even after a powerful antispam has done its job, commercial e-mails and social network notifications still represent more than 50% of the messages that reach your inbox. At Vade Retro, we call these “graymail”. Graymail refers to low-priority messages that are occupying an increasing amount of space in inboxes.
This whole process is fully seamless for the user. For quicker execution, the browsing process is outsourced so that is takes place in the Vade Retro Technology datacenter. In less than 2 seconds, the user will be able to see the status of his unsubscription in his interface: §...
General recommended architecture The MailCube MC ² appliance fits into your architecture by being placed in the path of SMTP traffic. The figure below (Figure 3-1) shows the architecture recommended by Vade Retro Technology.
Initial startup Upon receipt of your MailCube, you will be provided with a Getting Started guide. This guide explains step step the prerequisites to check and basic actions to perform in order access the administration interface (Figure 3-1). Figure 3-2 Getting Started guide, Virtual Edition The elements shown in the initial startup are not set.
To log on to your administration interface, enter in your web browser the IP address assigned to your MailCube during startup (or the DNS equivalent), followed by the port 8080. You will then reach a home page asking you to enter your username and password (Figure 4-1). The input should be in this format: http://XXX.XXX.XXX.XXX:8080...
Page 10
Figure 4-3 Button to log out from the administration interface VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Configuring your MailCube Integrate the appliance completely into your architecture This chapter explains the fields to enter during the configuration of your MailCube so that it can filter incoming mail according to Vade Retro’s predefined settings. Network settings interface To access the settings interface, click on "Configuration" then "Network". See Figure 5-1.
MailCube administration interface. Be carefull, by activating HTTPS, it is mandatory to set up a certificate. Without any certificate, the browser shows a security warning before showing the webpage.
§ The restrictive mode makes the MaiLCube compatible with encrypted inbound connetions but, by activating this setting, the mailcube received only encrypted connections and rejects all non-encrypted connections. Be carefull, by activating TLS on inbound streaming, it is mandatory to set up a certificate. Without any certificate and the TLS activated, the inbound streaming doesn’t work.
Figure 5-5 Access to the security settings interface (Outbound TLS) Domain declaration interface Declaring domains will allow MailCube to intercept e-mails you wish to filter. The appliance will analyze received traffic, apply the configured actions and send the remaining e-mails to the defined e- mail server.
Page 15
The “Default Route(s)” will define an e-mail server/router common to all domains. Your MailCube appliance will now filter your e-mail traffic. An advanced setup interface allows you to define your own filter rules (Chapter 7). VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€...
The terms “Receiving” and “Sending are to be taken into account for the direction of e-mail traffic. Thus for the incoming traffic, what is received is what enters the MailCube appliance, what is sent is what goes out to your e-mail server.
Figure 6-2 E-mail server section –sub-section: Reception Queuing In this sub-section, you can customize queue management on your MailCube: (Figure 6-3) § Maximum number of queued messages. § Maximum retention time of a queued message. § Maximum retention time of a queued non-delivery notification message.
The terms “Receiving” and “Sending are to be taken into account for the direction of e-mail traffic. Thus for the outgoing traffic, what is received is what enters the MailCube appliance from your mail server, what is sent is what goes out to the internet.
One routing in transparent mode to centralize your internal traffic. By enabling the outgoing server (Figure 6-6), you will filter outgoing traffic with the Vade Retro engine. If you want to use the MailCube in routing mode only, you must select "Transparent mode (routing only)".
Figure 6-8 Outgoing e-mail server section –sub-section: Reception Queuing In this sub-section, you can customize queue management on your MailCube: (Figure 6-9) § Maximum number of queued messages. § Maximum retention time of a queued message. § Maximum retention time of a queued non-delivery notification message .
Figure 6-10 E-mail server section – sub-section: Sending VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Capitalize on the power of Vade Retro’s filter engine This is the heart of the antispam filter system. From this chapter onwards, you will find all the technical details you need to configure your MailCube’s filter engine. Interface for incoming filter configuration This section allows you to configure and customize your antispam filter.
VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 24
Figure 7-3 Filtering section – sub-section: Domain filtering (1 part) VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Dr. Web antivirus). You can also choose what action to take when such messages are detected: delete, retain or tag. (Figure 7-7). VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
X-DRWEB-SCAN : [Result of the DrWeb Analysis] These headers can be used for processing messages after MailCube analysis. VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Figure 8-1 Monitoring section – Activation of SNMP Syslog export The Syslog export function allows you to extract log files written by MailCube in real time. Reading the logs will allow you to better analyze the behavior of e-mails when needed or as a source of analysis for Vade Retro Technology’s support.
Figure 8-3 Monitoring section – Activation of system alerts VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
The latest version of filters installed is also indicated here. Figure 9-1 Automatic update section VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
User accounts management Configuring your users’ accounts After integrating the MailCube in your environment and adapting filters to your needs, we will see how to configure your user accounts. You can set the frequency with which reports will be sent as well...
Figure 10-3 “User accounts” section – User settings VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Settings of mutual account reports (Administrator Access) You can define a centralized administration for selected e-mails. To doso, MailCube offers an interface to manage admin reports (Figure 10-4). The mutual account will contain all e-mails that have been withheld from the user.
Known mailboxes This section allows you to manage e-mail accounts protected by MailCube. You can delete the user account of a mailbox you no longer wish to protect, force the activation of a mailbox or force the sending of e-mail alerts.
VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Figure 10-9 “User accounts” section, list of aliases VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Figure 10-9 Opening a “Mutual account” Figure 10-10 Opening a “Mutual account” VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
: Whitelist the sender and receive the message : Unsubscribe from the advertising campaign VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 43
(Figure 10-14). Figure 10-13 User account configuration VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 44
"Merge accounts", the user will access the following interface (Figure 10-16) which allows associating an alias with his main mailbox. VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 45
Figure 10-16 User alias management VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416 10C 1V2 01/11 FR...
This configuration per domain allows you to clarify certain points according to the domain to protect. Introduction to domain management interface When you select the tab “Domains”, the interface shows all domains protected by MailCube (figure 11- 1). You can add or delete a domain to protect using the relevant buttons.
For such cases it is advisable not to send an activation alert and consequently exclude the mailboxes with multiple recipients. Thus, e-mails filtered by your MailCube will automatically be routed towards the mutual account – accessible only by the MailCube administrator.
Maintenance Back up & restore your configuration in a few clicks In this chapter you will learn how to access the maintenance area of your MailCube to back up or restore your configuration in the event of a system failure.
Page 50
Read the error message. Figure 12-1 Queue VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416 10C 1V2 01/11 FR...
(USB key, external hard drive). To do so, click on “Initiate export”. In case of a technical failure of your MailCube, you can restore the configuration settings based on your backup. To restore your configuration, click on “choose a file” then on “apply”.
This menu allows you to Shut down or Restart the system. Figure 12-5 System section VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
High availability configuration Secure your e-mail filter architecture In this chapter you will learn how to set the High Availability mode on your MailCube. This method only works if you have a second MailCube to secure your architecture. Cluster mode settings The cluster function offers three operating modes: §...
Page 54
The “Slave” access will allow you to identify IP addresses of MailCubes configured as slaves (figure 13-3). VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 55
Figure 13-3 High availability – Slaves settings “Quarantine” access enables you to setup an external MailCube as the external storage for user accounts and for mutual accounts (figure 13-4). Figure 13-4 High availability – Configuration of externalized quarantine On the MailCube configured as a slave, an “M/S Synchronization” menu enables you to launch synchronizations among appliances.
MailCube. Presentation of the log access interface This screen allows you to quickly view the processing performed by your MailCube after an e-mail arrives. You can easily conduct searches using the available dialog box (Figure 14-1). You can look for messages by recipient, sender, message ID or by date. You can also perform a multi-criteria search.
Page 57
By clicking on the small arrow to the left of the date (Figure 14-3), you will get full details of the processing done by your MailCube: details of the message header, spam score and action taken (delivered, tagged, retained, deleted).
In this chapter you will discover how relevant reports allow you to learn more about the status, nature and actions performed by MailCube regarding your e-mail traffic. These reports can be easily used as real dashboards over a given period of time. You can thus determine whether you are a prime target for spammers, refine your filter settings and further secure your messaging system.
§ Figure 15-2 Example of statistics details VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416 10C 1V2 01/11 FR...
Tagged: Number of messages for which the subject was modified by adding a customized “tag”. Example [NEWSLETTER]. To be delivered: Messages placed in the MailCube queue to be delivered to the e-mail server. Awaiting activation: E-mails for which recipients have not activated their user account.
You will also find indications about the types of messages received and their qualification. This page is regularly refreshed and enables you to see the traffic passing through your MailCube in almost real time.
What if an unwanted message has not been blocked? If an unwanted e-mail goes through the MailCube filters and arrives in the user’s inbox, this means that the difference between this message and a legitimate one is extremely thin. In this case, MailCube will evaluate the danger of this message as negligible or even nonexistent and considers in this case that it is less important to receive spam than to not receive a relevant message.
80 in outgoing for filter engine updates in incoming for the user account to be accessible from outside, § 8666 to enable Vade Retro Technology support to connect to the appliance and to diagnose problems. Between the appliance and your local network: 25 from appliance to your e-mail servers, §...
The .msi must be provisioned in a shared area that complies with the security policies shown in the screenshot below. VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
In the GPO, select the “Scope” tab then in the “Security filtering” zone, select the target users. VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 66
Back in the group policy interface after having selected “Software installation”, right-click in the section on the right and click on “New”, then “Package”. VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...
Page 67
“Install this application at logon” § “Maximum” VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416 10C 1V2 01/11 FR...
Outlook environment, it will be offered in the form of an additional tab like this: VADE RETRO TECHNOLOGY, SASU Au capital de 268 831€ 3 avenue Antoine Pinay, Parc d'activité des 4 vents, 59 510 HEM – France – RCS Rbx – Tourcoing - 509 568 416...