i have allow my firewall port 25 access to email server. when i receive spam email from outside. i did header check i need to block it but can't find a way to do this deny traffic
Regards
Would you like to block Spam? If that's really it, you won't be able to block it at the Firewall level, what you really need is an anti-spam.
https://www.cisco.com/c/en/us/support/security/email-security-appliance/series.html
https://www.comparitech.com/net-admin/anti-spam-software/
not really to block spam but just to see if i can first block the ip of spam email from firewall before block again from anti-spam.
Regards
Have you tried blocking the IP from Security & SD WAN -> Configure -> Firewall and adding a rule in inbound rule?
Details on using layer 3 firewall rules.
on inbound rules it need ip address from LAN, don't allow public ips
Regards
Can you try this?
Hi how to create the application remote ip range
what that i am thinking is that firewall is the first line defence and i should be able to do the block
Is your server in the cloud or is it on premise? In fact, it is not the role of the firewall to block spam. you can block the ip, but do not forget that usually an email server can have more than one IP, especially if it is in the cloud. Maybe you have to review your concepts.
My server is on premise,
as can't find a way to block the ip as mentioned before would like to do it first on firewall before coming to email server
As I said, you can try to block the IP or domain, but don't expect the Firewall to act as an anti spam.
Have you considered adding the content filtering category "SPAM Sources"?
Hi yes i have add content filter SPAM sources on threat category