Messaging Gateway

 View Only
  • 1.  SMG Appliance (v10.5.4) removes valid iCloud.com emails due to Global Bad Senders list.

    Posted May 04, 2016 06:53 PM

    This is the second time in the past two months that valid iCloud.com emails have been deleted with a verdict of "Symantec Global Bad Sender".

     

    Furthermore, adding the email to the Local Good Senders List does not allow the emails through.  They still get Deleted.

     

    Is there a resolution to this issue?



  • 2.  RE: SMG Appliance (v10.5.4) removes valid iCloud.com emails due to Global Bad Senders list.

    Broadcom Employee
    Posted May 17, 2016 04:26 PM

    As long as people send out spam email from Apple's iCloud IPs, we will blacklist them. The only way to bypass a global bad senders verdict is by adding the sender's IP address to the local good sender IPs list.



  • 3.  RE: SMG Appliance (v10.5.4) removes valid iCloud.com emails due to Global Bad Senders list.

    Posted Jun 10, 2016 07:01 PM

    @TSE-JDavis: How is that supposed to work?  

    The IP addresses for the final leg of the email's journey to their SMG would still be iCloud's IPs if that is the service the sender is using for emails.

    Or, are you suggesting that they completely bypass the Global Bad Senders block by adding iCloud's IPs to the Local Good Senders IPs list?

    Just making sure we're all on the same page here.

    TIA.



  • 4.  RE: SMG Appliance (v10.5.4) removes valid iCloud.com emails due to Global Bad Senders list.

    Posted Jul 07, 2016 04:00 PM

    Well,

    It happened again to an email from a completely different email domain.  The domain in question, richmondpd.net, checks as being "Ok" from MxToolbox's Domain Blacklist check.  That tool checks 107 known blacklists across the internet 

    So, I am not sure what blacklists the Symantec Global Bad Senders is drawing from, but I *would* like to find out which blacklist they are on and the reason for the blacklisting so I can inform them and the issue can be corrected.

    @TSE-JDavis: Adding the associated IP address for the domain to the Local Good Senders IP List did not stop the Global Bad Senders routine from deleting the email.  

    Any other thoughts for solutions to this issue?

    TIA.



  • 5.  RE: SMG Appliance (v10.5.4) removes valid iCloud.com emails due to Global Bad Senders list.

    Broadcom Employee
    Posted Jul 07, 2016 04:06 PM

    The SMG doesn't just check the immediately connecting IP, it also checks the email headers for the other servers this passed through, since they might be blacklisted as well. You'll want to check the email's header for any other IP addresses listed and check all of them.



  • 6.  RE: SMG Appliance (v10.5.4) removes valid iCloud.com emails due to Global Bad Senders list.

    Posted Jan 06, 2017 03:22 PM

    Okay, that's it.

     

    After having a couple other valid emails get blocked from valid domains, namely usdoj.gov, we are done.  

    Our solution: Drop SMG altogether and use a different email filter appliance.