My current set up is a threat management gateway server, running an edge server and forefront protection for exchange 2010. My exchange server is a 2007.
What I am seeing, is some of our clients trying to send us emails and they are being added to the IP block list, I'm assuming by the sender reputation, even if I have them in the IP allow list. I usually see this after we have a few quick replies from the client in a row. I had several examples where I had an IP address in the ip allow list, but it was then added to the ip block list and that person was getting the 550 5.7.1 External Client with IP address x.x.x.x does not have permission to send to this server. On my sender reputation, the SRL was set to 0 and on the sender confidence, I had perform an open proxy test checked.
I am unsure of what settings to change to make it so our clients are not added to the ip block list. As a temporary measure I have disabled the IP block list and Sender Reputation on the edge server, so our clients don't get annoyed with us.
Does anyone have any suggestions on how to stop the legit clients from being added to the ip block list? I would like to have that feature turned on again.
Posts: 1
Joined: 28.Dec.2010
From: Sweden
Status: offline
To stop the legitimate senders from getting added to the IP Block list by the Sender Reputation function is rather straight forward:
Set the sender reputation level block threshold to at least 7, which is the default value. (0 is way to sensitive and will block a lot of legitimate senders.)
But, there is another problem: How did it become 0 in the first place?
In my setup, which is very similar to yours except my Exchange server is 2010 instead of 2007, it has been mysteriously reset to 0 three times now. It seems to happen when I install a service pack or an upgrade rollup on the system. If it was reset to the default value I could understand it, sort of. But why is it reset to 0? Anyone?
Sorry to necropost, but I've having this exact issue and can't figure it out. I've Googled my heart out and this thread is the only confirmation that others have experienced the same thing :
Every so often I get reports that customers emails are bouncing, when I check our edge servers I find that the SRL Threshold has been set to zero. At first I thought it was something I'd done wrong, but it's done it 3 or 4 times now.
I'm running Edge Exchange 2010 with Forefront Protection for Exchange 2010
I just installed Rollup 3 for Forefront which hasn't helped, in fact after rebooting the SRL was at zero again, so perhaps there is something in what jgbptl said.
Any and all advice appreciated!
EDIT : Actually, I can confirm the SRL Threshold is set to zero after every reboot. Happens on both Edge servers (we have two which have been set up identically)
< Message edited by bloomagency -- 4.Nov.2011 11:13:34 AM >