Forum Discussion
Using EOP to secure Google workspace
I have my domain emails on google workspace and I want to secure email is it possible to configure mailflow to go through EOP in and out, and if that is possible how to do that
2 Replies
Refer this:
Configure Outbound Mail Flow:
-
Set Up an Outbound Gateway in Google Workspace:
- Sign in to your Google Admin console.
- Go to Apps > Google Workspace > Gmail > Hosts.
- Click Add Route and enter the details for your outbound gateway (EOP).
- Save the settings.
-
Configure Routing in Google Workspace:
- Go to Apps > Google Workspace > Gmail > Routing.
- Click Configure or Add another rule.
- Enter a name for the routing setting.
- Check the Outbound box and select Modify message.
- Choose your outbound gateway route from the list.
- Save the settings.
2. Configure Inbound Mail Flow:
-
Set Up an Inbound Gateway in Google Workspace:
- Sign in to your Google Admin console.
- Go to Apps > Google Workspace > Gmail > Spam, Phishing and Malware.
- Click Edit inbound gateway and enter the details for your inbound gateway (EOP).
- Save the settings
-
Update MX Records:
- Update your domain’s MX records to point to EOP. This ensures that all incoming emails are routed through EOP before reaching Google Workspace.
3. Configure EOP:
-
- In the Microsoft 365 admin center, go to Admin centers > Exchange.
- Go to Mail flow > Connectors.
- Create a new connector for mail coming from your Google Workspace domain to EOP.Set Up Connectors in EOP:
- Create another connector for mail going from EOP to your Google Workspace domain
Set up an outbound gateway to process outgoing email - Google Workspace Admin Help
Set up Default routing for your organization - Google Workspace Admin Help
Add Gmail Routing settings - Google Workspace Admin Help
- Moataz_shaaban1245Copper Contributor
I got some issues while configure from Exchange online side like this error while creating the connector:
Error:
Error executing request. SenderlPAddress '209.85.219.69" contains a third party vendor address and is not
allowed for inbound connector of type OnPremises. If you want to restrict mail flow to your organization from
third party vendors, please consider creating inbound connector of type Partner. Ilf this address/range belongs
exclusively to your organization and you want to configure mail flow originating from On-Premise using it,
please contact Microsoft support.
-