EOP
8 TopicsZAP (Zero-Hour Auto Purge) on internal traffic
Greetings !! Well I have ZAP enabled (Anti-spam inbound policy & Anti-malware policy) and it is working fine with some exceptions. Internal traffic that should be ZAP(ed) reports: "ZAP took no action due to a tenant policy (ZAP disabled)". I suppose there is something else that is preventing ZAP on internal traffic. Do any IP addresses whitelisted in the Connection filter policy (Default) bypass the Anti-spam inbound policy ? Any thoughts ? Thank you.532Views0likes0CommentsEOP- Quarantine- Request for Release for particular mail
Hi When user get quarantine notification with the list of blocked emails in quarantine and then user choose particular one for "request for release", then this information is correctly passed to admins, but when admin clicked on the link (in emails) got list of all quarantined emails of this person- not the current one which was requested. So it means that admin at the end don't know which one should be released.... Anyone has idea to handle it?Solved1.8KViews1like5CommentsEOP- Quarantine- Access to shared or other person quarantine
Hi is any option to set up access to other person quarantine? for example user should open quarantine from link/email shared mailbox and another case when person is on OOF- can I set up permission for other person to get access to quarantine of this person?1.7KViews0likes2CommentsEOP- AntiPhish/AntiSpam rules conflict
Hi I already have created AntiSpam, AntiPhish and AntiMalware Policies. Everything works fine except situation when mail is classified to both categories- for example High Phish/Spam then take precedence quarantine policy for antispam not for anti-phishing and email is finally landed in junk email folder (based on antispam quarantine rules) but I would like to block this email (based on the antiphish policy)... how to force antiphish policy setting precedence antispam?Solved1.2KViews0likes1CommentAs of February 2021, does EOP/Microsoft now send DMARC aggregate reports?
I believe I have spotted evidence that the answer is yes. If you look at this answers.microsoft.com thread the answer states: TL;DR Office 365 currently does not send out any DMARC reports. If it was sending out Aggregate reports, being behind a Mimecast would still generate reports for emails not filtered by Mimecast (not SPAM or Phishing). They would probably contain a lot of failures, because, for Office 365, the sending server will be Mimecast, which most likely is not added to the SPF of the sending domain. And, depending on what Mimecast is doing with the emails, the DKIM signature, if present at all, may be broken. The_Exchange_Team / Greg Taylor - EXCHANGE are you able to confirm if EOP does in fact now send DMARC aggregate reports? Working with a customer whose MX records point to an on-premises mail gateway, and they're getting reports from affiliates who use DMARC in reporting mode that that their mail gateway is trying to send mail for them, unauthenticated'ly. Essentially the exact issue that is alluded to in hypothetical terms in the quoted answer excerpt above. Thanks in advance.Solved14KViews0likes23CommentsPending messages in EOP
Is this still valid? "If emails cannot be delivered due to a problem with TLS those emails will queue in Exchange Online Protection (EOP) and will be marked as Pending or Deferred. If you change the Outbound Connector in EOP to work around the problem these messages will NEVER be delivered, even after the transport issue is resolved." If this is resolved, how can we re-route/resend pending emails?1.3KViews0likes0CommentsOffice 365 ATP in conjunction with a Third Party spam filter
Hi, I'm just after any advice, experience, comments, lessons learned, etc in relation to using Office 365 Advanced Threat Protection to enhance anti-spam capabilities for Exchange Online.....but in a scenario where the anti-spam is being handled by an external service and not EOP. * Should we do this? * Does ATP lose some of it's capabilities when the filtered mail from the external spam filter is treated as clean (SCL -1 or equivalent)? * If there is no sender rewrite by the third party spam filter, does ATP mailbox intelligence or anti-phishing policies even work? * Anything to add would be welcome here really RegardsSolved5.7KViews1like4Comments