Table Of ContentAccount Administrator’s Guide
V9.0
ePrism Email Security Suite
(630) 759-9283
www.JIKOmetrix.net
©2001–2013EdgeWave.Allrightsreserved.TheEdgeWavelogoisatrademarkofEdgeWave
Inc.Allothertrademarksandregisteredtrademarksareherebyacknowledged.
MicrosoftandWindowsareeitherregisteredtrademarksortrademarksofMicrosoftCorporationin
theUnitedStatesand/orothercountries.
Otherproductandcompanynamesmentionedhereinmaybethetrademarksoftheirrespective
owners.
TheEmailSecuritysoftwareanditsdocumentationarecopyrightedmaterials.Lawprohibitsmaking
unauthorizedcopies.Nopartofthissoftwareordocumentationmaybereproduced,transmitted,
transcribed,storedinaretrievalsystem,ortranslatedintoanotherlanguagewithoutpriorpermission
ofEdgeWave.
AcctAdmin09.0.0.001
Contents
Chapter 1 Overview 1
OverviewofServices 1
EmailFiltering(EMF) 2
Archive 3
Continuity 3
Encryption 4
DataLossProtection(DLP) 4
PersonalHealthInformation 4
PersonalFinancialInformation 5
DocumentationConventions 6
OtherConventions 6
SupportedBrowsers 7
ReportingSpamtoEdgeWave 7
ContactingUs 7
AdditionalResources 7
Chapter 2 Portal Overview 8
NavigationTree 9
WorkArea 10
NavigationIcons 10
GettingStarted 11
Loggingintotheportalforthefirsttime 11
Loggingintotheportalafterregistration 11
ChangingYourPersonalInformation 12
ConfiguringAccounts 12
Chapter 3 EdgeWave Administrator Dashboard 13
AccessingtheAdministratorDashboard 13
UsingtheAdministratorDashboard 14
CustomizingtheDashboardTiles 15
UsingOmniSearch 16
ChangingYourPassword 16
Chapter 4 Accounts 18
BestPractices 18
ConfiguringwithOtherSpamFilterClients 18
WhitelistsandBlacklists 18
iii
QuickStart 19
AddinganAccount 19
ManagingAccountInformation 19
ManagingAdministrators 21
AccountAdministrators 22
Chapter 5 Domains 24
AddingaDomain 24
AboutMXRecords 25
DomainSettings 25
DomainDigestOptions 26
PersonalDashboardOptions 27
FilteringOptions 28
FilteringCategories 30
BlockedMessages 31
ForeignLanguage 31
Attachments 32
ContentFilters 32
FilterbySender 33
Authentication 34
MailboxDiscovery 35
UnrecognizedRecipientHandling 36
DirectoryHarvestAttackProtection 38
AliasHandling 38
MailGateways 39
EmailServers 39
BoundaryEncryption 40
TestConnection 41
RoutingandSessionManagement 41
DeletingaDomain 42
ViewingDomainStatus 42
EmailContinuity 43
Configuration 43
Reporting 44
Chapter 6 Outbound IP Addresses 45
AddinganOutboundIPAddress 45
OutboundIPSettings 45
OutboundFiltering 46
OutboundFilteringOptions 47
iv
OutboundFilteringCategories 48
OutboundIPWhitelistsandBlacklist 49
ConfiguringDeliveryStatusNotification 50
SettingRateLimits 51
MessageAnnotation 53
BoundaryEncryption 54
RoutingandSessionManagement 56
Domain-SpecificDeliveryExceptions 57
Authentication 59
SpecialRouting 60
EncryptionService 60
CustomRouting 62
ViewingOutboundIPStatus 62
Chapter 7 Mailboxes 64
AddingaMailbox 64
ConfiguringIndividualMailboxes 65
GeneralSettings 65
PersonalDashboardOptions 66
OutboundMailOptions 67
MailboxAliases 68
CreatingMailboxAliases 68
AutodiscoveringAliases 69
ReversingAutodiscoveredAliasRelationships 69
ChangingFilterPoliciesandDigestSettings 70
UnprotectingaMailbox 70
DeactivatingaMailbox 70
DeletingMailboxes 71
Chapter 8 Verifiers 72
AddingaVerifier 73
LDAPVerifier 75
VRFYVerifier 76
RCPTTOVerifier 76
CommunigateCLIVerifier 77
POP-AuthenticationOnlyVerifier 77
DatabaseVerifier 78
StaticVerifier 79
CompositeVerifier 79
TestingtheVerifierConnection 80
v
ModifyingVerifiers 81
DeletingaVerifier 81
WhenVerificationServersFail 82
Chapter 9 Content Filters 83
CreatingaContentFilter 83
ModifyingaContentFilter 85
AddingaContentFiltertoaDomainorOutboundIP 86
Chapter 10 Notifications 87
AddingaNotification 87
UnitsofMeasurement 91
EditingaNotification 92
Chapter 11 Reporting 93
RunningaReport 93
SortingReportData 94
DownloadingReportData 94
SubscribingtoaReport 94
Reports 95
Charts 96
AdvancedReport 96
DeliveredMessageReport 97
DeferredQueueReport 98
MessageCategorySummary 98
MessageHandlingSummary 99
QuarantineReport 99
AppendixA EdgeWave Message Headers 100
X-MAG-CategoryDescriptions 100
AppendixB SMTP Session Return Codes 102
vi
Overview
CHAPTER 1
Thisdocumentisageneralguideforplanning,configuring,andoperatingtheEdgeWave Email
Securitysystem.Itdescribesthefeaturesandapplicationsofthesystem,toassistadministratorsin
effectivelydeployingtheEdgeWavesolutionintheirenvironment.
Overview of Services
EdgeWaveoffersacompletesuiteofemailsecurityservices.TheEmailSecuritySuitedeliversnext-
generationservicesthatprotectyourbusinesswithcomprehensiveend-to-endsolutions.Theemail
securityservicesdefendagainstinternalandexternalthreats,assurecontinuousmailstreamflow,
protectagainstdatalossandhelpfulfillregulatorycompliancerequirements,whileassuringfast,
accuratedeliveryofbusiness-criticalemail.
EdgeWavetakesthecomplexityoutofoperatingitsproductsandremovestheadministrativeburden
fromemailsecurity.Theplatformissimpleandeasytouse.EdgeWaveprovidestwoprimary
services:
• Hosted:Withthehostedsolution,EdgeWave’scustomersdonotinstallanyclientsoftware.
Theydonotneedtomodifyanyoftheirservers,ortraintheirstaffintheuseofEdgeWave
technology.Youenjoylowerbandwidthcosts,lowermailserverutilization,andlowerarchival
capacitydemands.
• Appliance:EdgeWaveoffersafullfamilyofePrismappliances.TheePrismapplianceleverages
theresourcesoftheEdgeWaveSecurityOperationsCentertoprovideredundancyand
managedservice.
Chapter1Overview 1
EmailSecurity AccountAdministrator'sGuide
Email Filtering (EMF)
TheEdgeWaveemailfilterprovidesemaildefenseagainstinternalandexternalthreatssuchas
spam,viruses,spyware,phishingschemes,identitytheft,andotherdangerousoroffensivecontent.
Ourservicesincludeinbound/outboundSpamandAntivirusfiltering,policycategorizationand
automatedseamlessdirectoryintegration.EdgeWavetechnicalexpertsprovideproactive
monitoringandmanagementdesignedtostopthreatsbeforetheygetnearyourinternalservers.
• BothInboundandOutboundProtection–Protectingoutboundemailiscriticaltopreventing
dangerousbotnetattacksthatcanturninfectedcomputersintozombienetworks.OurAward-
winningfilteringoffersprotectionfromspam,virusesandcriminalmalwareonbothinboundand
outboundmailstreams.EdgeWave’skerneltechnologyisaproprietarymessagedefense
systemthateliminatesspam,viruses,spyware,phishingschemes,andoffensivecontent.Italso
stopsDirectoryHarvestAttacks(DHA)andDistributedDenialofService(DDoS)attacks.
• No-TouchEmailSecurity–Wehosttheapplicationsandinfrastructurerequiredtoprotectyour
organizationinafullymanagedsolutionrequiringzeroadministration.
• Disasterrecoveryprotection–EdgeWaveEmailSecurityspoolsallemailforupto160hours,in
caseofunexpectedevents,soyouneverloseyourbusiness-criticalemail.
• Proactivemonitoring–EdgeWaveengineerscontinuallymonitoremailprocessestoassurethey
areperformingatpeakefficiency.
• ZeroMinuteDefense–Thisfeatureassuresthatassoonasanemergingthreatisidentified,our
engineersdeployaspecificruletoblockit.Noothersolutionhasit.
• TLSEncryption–OurTLSEncryptionworksbyestablishingprivateemailnetworkslinkingyou
withyourbusiness-criticalpartnersviatheuseofcertificates.Everyemailsentorreceivedby
thesenetworksisfullyandsecurelyencryptedwhiletheencryptionremainscompletely
transparenttobothsenderandrecipient.
• TechnicalSupport-EdgeWave’sSecurityOperationsCenter(SOC)isstaffedaroundtheclock
withemailexpertsandsecurityspecialistsfor24/7/365support.Theyprovideproactive
monitoringofanyemailthreatstoassurecontinuousserviceforallEdgeWavedomainsand
users.
• TheserviceofferstheoptionofaSpamDigestformailboxholders.TheSpamDigestisan
emailedversionofaquarantinereport.Itallowsuserstoreviewblockedspammessagesand
releasethemtotheiremailinbox.
Chapter1Overview 2
EmailSecurity AccountAdministrator'sGuide
EdgeWave’sbehavior-basedperimeterdefensesystemusesreal-timeawarenessofspam
campaignstoimplementamerit-basedresponsewhileprovidingdefensesateachstepoftheSMTP
connectionandsessionlayer.EdgeWavedoesnotrelyonIPReal-timeBlackholeLists(RBLs)to
defendagainstspammers,andusesavarietyofpatentpendingtechniquestodealwithspamand
attacksoriginatingfrombotnets.
EdgeWaveemploysacombinationoftechniquestoprotectemaildomainsandtofilterspamemail
thatdoesnotconformtothecommontechniquesusedwithintheindustry.Threekeydifferentiators
oftheEdgeWavesolutionare:
• Amanagedappliancesolution
• Industry-leadingblockratewithoutanyITstaffmaintenance
• Dynamicresourceallocationandserviceredundancy
Archive
EdgeWaveofferssecureemailarchivingthatisscalabletofittherequirementsofanysize
organization.Ourarchivingretainsyouremailinanunalterablestatetohelpyoumeetrequirements
forregulatorycompliance,litigationissues,storagemanagementneeds,ortofulfillbusinessbest
practicesguidelines.EdgeWaveArchivingServicesarein-the-cloud,soscalabilityisassured.And
oursecuredatacollectiontechnologyprovidescomprehensiveinteroperabilitywithallemail
systems.
Continuity
Continuityisaservicethatenablescontinuousweb-basedemailaccess,management,anduse
duringplannedorunplannedmailserveroutages.Continuityisenabledeasilyviaasimpleadmin
checkbox,givingyourusersaccesstotheirmailsothattheycanmanagemessagingandavoidany
disruptionintheflowofcritical,legitimatebusinesscommunications.Incaseofanoutage,endusers
accesstheWeb2.0emailclientallowingthemtomanagetheiremailandperformthefollowing
tasks:
• Knowthatanysentmessagesinlimboasaresultofanoutagewillnotbelostbecausetheyare
Bcc’dandwillbedeliveredwhenthemailserverisbackonline.Rulesonthemailservercanbe
implementedtotakethosemessagesanddivertthemtotheusers’SentMailfolderstocomplete
theactivitysynchronization.
• Read,compose,replyto,forwardanddeletemessages.
• Uploadanddownloadattachments.
Chapter1Overview 3
EmailSecurity AccountAdministrator'sGuide
• Performfulltextsearchesofallthemessagesintheirmailboxes.
FormoreinformationonconfiguringEmailContinuity,seeEmailContinuity.Fordetailsonsettingup
adomainwithEmailContinuity,seeRoutingandSessionManagement.
Encryption
Encryptionservicesassurethesecuredeliveryofyouremailinaccordancewithyourorganization’s
SecurityPolicy,andprovideconfirmationofmessagedelivery.Comprehensivereportingoffers
messagetrackingandanaudittrailtosupportregulatoryandotherrequirements.
FormoreinformationonconfiguringEncryption,seeSpecialRouting.Fordetailsonhowmessages
arerouted,seeOutboundFilteringOptions.
Data Loss Protection (DLP)
DLP,alsoreferredtoasEmailDataCompliance,isacontentanalysisandpolicyenginethatuses
proprietarytechnologytoprotectprivateinformationtransmittedviaoutgoingemail.Thisdata
protectiontechnologyanalyzesinformationbeingsentoutofyournetworktodetectprivatecontent
indatainmotionandpreventsensitiveandconfidentialdatafromleavingyournetwork.EdgeWave
DLPgivesyouthepowerfultoolsyouneedtocomplywithgovernmentregulations,suchasHIPAA
andGLBA,andpreventstheoutboundcommunicationofalltypesofsensitiveorobjectionable
material,including:
• Patienthealthcareinformation
• Financialinformation
• SocialSecuritynumbers
• CreditCardnumbers
• Profanity
Specifically,DLPchecksthedataasfollows.
Personal Health Information
Personalhealthinformationincludesbothhealthtermsandpersonalidentifyinginformation.Both
mustbepresentinanemailtoproduceamatch.
Healthtermsincludewordsandphrasessuchas:
• fractures
• catscan
Chapter1Overview 4
Description:service Administrator Dashboard where email domains and mailboxes are managed. Each account excepts multiple sub-domains. 3. For the