Welcome to MDaemon Technologies' Suggestion Box
Listening to our customers is more than part of our mission statement, it is part of our culture. Do you have an idea that can improve our products or process? Please share it with us!
-
o365 Verify Users Guide is completely wrong(real guide below)
- Open PowerShell
- Use one of the following commands to connect to the AD Azure tenant. a. Office 365 Worldwide (+GCC) • Connect-MsolService -AzureEnvironment AzureCloud b. Office 365 Germany • Connect-MsolService -AzureEnvironment AzureGermanyCloud c. Azure China Cloud • Connect-MsolService -AzureEnvironment AzureChinaCloud
- Enter the Office 365 administrator credentials when prompted.
- (Optional) Enter the following command to review a list of existing service principals. • Get-MsolServicePrincipal
- Enter the following to create a new service principal. • $principal = New-MsolServicePrincipal -DisplayName 'SecurityGatewaySP' -ServicePrincipalNames @("SecurityGatewaySP") -Type Password -Value 'useapasswordofyourchoicehere' -StartDate (Get-Date) -EndDate (Get-Date).AddYears(1) o The service principal object will…
1 voteHello,
Thanks for sharing. Where are you finding incorrect information? If its in the SecurityGateway help files, what version of Security Gateway are you using?
Thanks,
Arron
-
Security Gateway license purchase
Why isn't possible to buy multiple years support like in MDaemon Mail Server and its connected components?
1 voteHello,
Thank you for your suggestion to allow multiple-year licenses for SecurityGateway. At this time it is sold as an annual subscription model and only a single year is allowed. We will look into multiple-year licenses for the future.
Thanks,
Arron -
Move messages from admin quarantine to user quarantine
Ability to move messages from admin quarantine to user quarantine.
Some messages that appear in admin quarantine don't always require admin action. But it is not always clear whether the user would wish to receive the message. Ideally have the ability for an admin to move a message to user quarantine - to allow the user to make the decision on whether to release / delete / whitelist etc.
3 votesHello,
Thank you for your suggestion to add the ability to move messages from the Admin quarantine to the user quarantine. It will be considered for future versions.
Thanks
Arron -
Show summary reason of Junk in Statistics Report
Statistics Report shows an amount of Junk messages processed. For Security awareness it would be great to have an additional table/report which shows a summary of reasons (top 10?).
If a message is marked as Good, i presume the Result is Delivered and the Reason is Good.In my case I have a lot of connection attempts in which the next reasons/results are the most common.
Incomplete - No Mail Sent
Rejected - Location Screening
Rejected - Dynamic Screening
Rejected - HELO Lookup
Rejected - Blacklisted
Released - Callback Verification
Rejected - DNSBL3 votesHello,
Thank you for sharing your idea with us, to have a breakdown of the Junk email report. Is the Junk breakdown report what you are looking for?
Junk Email Breakdown—This report displays the total of all junk email, categorized by type, for the selected Domain during the Date Range specified in the report. Junk email is categorized into six types: Spam, Virus, Spoofing, Abuse, Incomplete, and User. The Incomplete category is for all sessions where a timeout occurs or the client closes the socket or issues a quit command before sending the data. SMTP probes fall under this category. The User category is for Blacklists, Content Filter Rules, Attachment Filtering, and custom Sieve Scripts. The remaining categories refer to their corresponding Security sections. The table below the graph contains columns for each type, and each row corresponds to the Summary time period by which the report is delineated (hours,…
-
search
A search option on the Domains list page, I have over 1300 domains and its not easy having to scroll through all the pages when trying to find a domain
3 votes -
Enhance quarantine portal
Currently the quarantine portal displays the "friendly name", and if you choose to whitelist or blacklist it is the friendly name that is used. Sometimes with malicious or spam e-mails; it is the from that needs to be blacklisted (or possibly the sending IP address). But there is currently no easy way to blacklist (or whitelist) either of these two fields from the portal. You need to goto the transcript copy the relevant values and then goto the security tab of the portal to blacklist the relevant value.
Ideally if this could be done from the quarantine section directly (or…
3 votes -
more details about whitelist / blacklist entry
when i go to whitelist / blacklist, there are entries with comment "Added from message log", it would be better if you add date when it was added so we would know if entry has been created recently or long time ago. I usually add date in comment so when someone asked me when it was blacklisted or whitelisted, i dont need to rely on my memory or email request when it was done.
maybe add "who" created it if entry is created for domain or global admin level.
2 votesHello Anthony,
Thank you for your suggestion to include additional details in the comments when adding a white/black list entry from the message log. Your request will be considered for future versions.
Thanks again,
Arron -
Possibility to add score to the SG Your personal Spam Quarantine Report
When looking at the mail you can release or blacklist a mail. A user can not see why the mail is hold until he/she logs on to the security gateway. In this way the action of the user can be a risk for your organization when he/she deploys the message and reads it. By adding the score in your report the user can be aware what to do with the message. When a mail is marked as spam the user can logon to security gateway and look into the transcript (if he understands that). An administrator can also do this…
3 votesHello,
Thank you for your suggestion to include the spam score in the quarantine report email. We will look into implementing this for a future version.
Thanks,
Arron -
Implement an administrative Enable/Disable option for the "automatic whitelisting feature” for user conversations
Just imagine a user starts to correspond with a SPAM address for what reason ever (released from quarantine e.g.).
Because of this “convenient feature” from this time on all future conversations sent to that user from this specific address most of the security checks are automatically(!) “disabled” because of that “automatic whitelisting” feature. Sorry, but that’s a security evil function!
Currently from administrative point of view there is only the option to set “default settings”, but can be changed anytime by the user….
That is – from security point of view – absolutely dangerous! Because once whitelisted a lot of…4 votesHello,
Thank you for your feedback. Adding an option for Administrators to prevent users from automatically adding addresses to the whitelist will be considered for future versions.
Thanks again,
Arron -
Login using the DA's name instead of the email address
Add a "$ACTIVEDIRECTORY$" macro in "User Verification Source" to authenticate using the name of the AD instead of the email address
3 votesHello,
Thank you for sharing your idea with us. I’m not fully undestanding what you are requesting, can you provide additional details?
Thanks,
Arron -
Please add one option into Security Gateway for remote mail delivery
The MDaemon mail server has three options for remote mail delivery.
But Security Gateway just have two options, they are:
Always send all outbound email directly to the recipient's mail server
and
Always send every outbound email to the server specified belowWe need increase the option like Mdaemon mail server.
Thanks.
6 votesHello,
Thank you for sharing your idea to add the option to attempt a delivery to a smart host when direct delivery fails. It will be considered for future versions.
Thanks again,
Arron -
Differentiate between Enabled and Disabled Users
When you click on 'Domain and Users" the domain list shows total number of users for each domain. It would be helpful if it would separate that out to show the number of users that are enabled.
1 voteHello Joan,
Thank you for sharing your idea with us to distinguish between enabled and disabled users in the user count. It will be considered for future versions.
Thanks again,
Arron -
Quarantine Scheduling
The current scheduler for Quarantine summaries is either Never, Every x hours, Daily or Weekly. The summaries are coming out just shortly after midnight and, since many people have e-mail on their cell phones, they are getting woken up and complaining. If we go into the settings and click on 'save' then the summaries can come out at a different time.
It would be nice to set an actual time or several like 8:00 AM and 6:00 PM
1 voteHello,
Thank you for sharing your idea to allow the time of daily quarantine reports to be configured. It will be considered for future versions.
Thanks again,
Arron -
Release Tab and Delete Tab Locations
Either move the Release tab in Message Queue Quarantine (User_ and Quarantine (Admin) from beside the the Delete Tab or add a confirmation popup that states you are releasing selected emails for delivery.
Since the Release and Delete tabs are next to each other there have been several occasions that emails have been released for delivery instead of deleted.
A confirmation on the Release tab should be done regardless.
1 voteHello,
Thank you for sharing your idea to add a confirmation prompt to the release and delete buttons. It will be considered for future versions.
Thanks again,
Arron -
Message Logs
Make it possible to export filtered message logs to CSV for analysis
10 votesHello Mark,
Thanks for sharing your idea to add the ability to export the message log to a CSV file. it will be considered for future versions.
Thanks again,
Arron -
Outlook Plug-in or Method to Send to SpamLearn and NonSpamLearn
Need an Outlook Plug-in or some easy method for users to send spam that has reached their inbox to send messages to the provided SpamLearn@ address. Likewise there needs to be an easy method to use the NonSpamLearn@. As another user posted, there is no option to flag these on the quaratine views. What is particularly disturbing is that there is no documented procedure for users to flag delivered messages as spam that I can see.
12 votesHello Paul,
Thank you for providing your feedback and ideas. We will look into improving the ability to classify messages as spam or non spam for future versions.
Thanks,
Arron -
Clustering and SQL Server
Add support for clustering on SG, and also the ability to use SQL Server as a database. This will resolve the single-point-of-failure issue with the product, and hopefully help improve performance when dealing with a very large DB.
14 votesHello Stephane,
Thank you for submitting your ideas, they will be considered for future versions.
-
Security Gateway - sending statistics report with domain name included
Security Gateway sends statistics reports and only mentions the server name. If you have one domain to monitor then this is no issue. Monitoring multiple domains as administrator it would be nice to see which domain the report is about.
In my case, I monitor multiple domains but only have one administrator selected so I get a per domain report.
In this case you can see which domain needs attention most.2 votesHello,
Thank you for your suggestion. We will look into adding the domain name to the statistics reports for future versions of SecurityGateway.
Thanks again,
Arron
-
Option to Drop Connection Immediately upon DNSBL or Blacklist IP Lookup Found
The IP Blacklist and DNSBL actions should have the option to drop the SMTP connection immediately after learning that the source IP is black listed. The reason to drop the connection immediately is to reduce the additional processing that is essentially wasted if the policy is to reject the email.
The Blacklist IPs and DNSBL should be examined ASAP after connection to minimize the time to decide to drop a listed connection. Dropping the listed connection ASAP reduces the chance of an SPAM or SMTP attack from overloading the SG.
7 votesHello Arnold,
I have verified with our developers that the tests are occurring after the RCPT command so that any domain exceptions that exist can be applied. We will consider having the tests occur earlier in the session when no domain exceptions exist for future versions of SecurityGateway.
Thanks,
Arron
-
Per domain Authentication
Sign email received by authenticated server: now DKIM only sign email from authenticated session but you can only defined authentication per user. For example I have Exchange behind SecurityGateway and if I configure authenticaed Send Connector i should also disable "Authentication credentials must match those of the email sender" on security gateway. Doing so if an hacker will stole a single password he will able to send email from any local users....
1 voteHello,
Thank you for sharing your ideas with us. I have split your ideas into multiple items.
If I’m understanding correctly, you would like an option to exclude domain mail server from the requirement for authentication credentials must match those of the email sender. Is that correct?
I also wanted to mention that Location Screening may help you to secure your server. It allows you to only allow authentication from specific areas of the world. So for example, if all of your users were in Italy, you could restrict SG to only allow SG from within Italy.
Thanks,
Arron
- Don't see your idea?