ESET Mail Security & Zarafa 7 infrastructure Integration

Similar documents
POP3 Connector for Exchange - Configuration

Migration Manual (For Outlook 2010)

SonicWALL Security Quick Start Guide. Version 4.6

Trend Micro Worry- Free Business Security st time setup Tips & Tricks

escan SBS 2008 Installation Guide

Spam Marshall SpamWall Step-by-Step Installation Guide for Exchange 5.5

Migration Manual (For Outlook Express 6)

Basic Exchange Setup Guide

F-Secure Internet Gatekeeper

1 Accessing accounts on the Axxess Mail Server

If you have used Outlook Web Access then you will find Zarafa Webaccess very familiar.

Basic Exchange Setup Guide

Anti-Spam Configuration in Outlook 2003 INDEX. Webmail settings Page 2. Client settings Page 6. Creation date Version 1.2

Norman Protection

Ciphermail for BlackBerry Quick Start Guide

Configuring MailArchiva with Insight Server

MultiSite Manager. User Guide

Copyright 2011 Sophos Ltd. Copyright strictly reserved. These materials are not to be reproduced, either in whole or in part, without permissions.

Sophos for Microsoft SharePoint startup guide

ESET Mail Security 4. User Guide. for Microsoft Exchange Server. Microsoft Windows 2000 / 2003 / 2008

Migration Project Plan for Cisco Cloud Security

A D M I N I S T R A T O R V 1. 0

ESET Mail Security 4. User Guide. for Microsoft Exchange Server. Microsoft Windows Server 2000 / 2003 / 2008

K12 Spam Management Blocked s from parents

the barricademx end user interface documentation for barricademx users

1 Functionalities of iq.suite Update Manager Installation New Installation Update Installation Configuration...

ESET Mail Security 4. User Guide. for Microsoft Exchange Server. Microsoft Windows Server 2000 / 2003 / 2008

PORTLANDDIOCESE.ORG - How to Connect Table of Contents

Installing Policy Patrol with Lotus Domino

User Manual VU-Mail Thunderbird (IMAP) February 10

ESET Mail Security 4. for Microsoft Exchange Server Version 4.2. Installation Manual and User Guide. Microsoft Windows Server 2000 / 2003 / 2008

& text message (SMS) relaying using Talk2M

Installation Guide For Choic Enterprise Edition

Hosted CanIt. Roaring Penguin Software Inc. 26 April 2011

INUVIKA OVD INSTALLING INUVIKA OVD ON UBUNTU (TRUSTY TAHR)

KASPERSKY LABS. Kaspersky Anti-Virus 5.0 for Linux, FreeBSD and OpenBSD Mail Servers ADMINISTRATOR S GUIDE

IMF Tune Opens Exchange to Any Anti-Spam Filter

GE Measurement & Control. Remote Comms System. Installation and User Reference Guide

MFPConnect Monitoring. Monitoring with IPCheck Server Monitor. Integration Manual Version Edition 1

MAIL SECURITY Installation Manual and User Guide

DESKTOP CLIENT CONFIGURATION GUIDE BUSINESS

RoomWizard Synchronization Software Manual Installation Instructions

NovaBACKUP xsp Version 15.0 Upgrade Guide

Math SMTP Server Configuration

Installing GFI MailEssentials

OnCommand Performance Manager 1.1

White Paper. Installation and Configuration of Fabasoft Folio IMAP Service. Fabasoft Folio 2015 Update Rollup 3

1. Installation Overview

Guardian Digital Secure Mail Suite Quick Start Guide

GWAVA 5. Migration Guide for Netware GWAVA 4 to Linux GWAVA 5

Emacs SMTP Library. An Emacs package for sending mail via SMTP. Simon Josefsson, Alex Schroeder

AND SERVER SECURITY

AND SERVER SECURITY

Configuration Manual

T E C H N I C A L S A L E S S O L U T I O N

How To Set Up The Barclaycard Epdq Cardholder Payment Interface (Cpi) On Papercut (Barclay Card) On A Microsoft Card (For A Credit Card) With A Creditcard (For An Account)

Install Guide VirusBlokAda

OR Filter 3.2 Manual. Draft. Copyright 2003, Martijn Jongen. All Rights Reserved Version : Ref. nr. : MhJ/ By : M.

Configure a Mail Server

AXIGEN Mail Server. Quick Installation and Configuration Guide. Product version: 6.1 Document version: 1.0

1 You will need the following items to get started:

DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

Troubleshooting IMAP Clients and ViewMail for Outlook in Cisco Unity Connection 8.x

PORTLANDDIOCESE.ORG - How to Connect Table of Contents

How to Install SMTPSwith Mailer on Centos Server/VPS

KASPERSKY LAB. Kaspersky Anti-Virus 5.5 for Linux and FreeBSD Mail Servers ADMINISTRATOR S GUIDE

Frequently Asked Questions for New Electric Mail Administrators 1 Domain Setup/Administration

ASAV Configuration Advanced Spam Filtering

Kaseya Server Instal ation User Guide June 6, 2008

Avira Exchange Security Small Business Edition. Quick Guide

ESET NOD32 Antivirus 4 for Linux Desktop. Quick Start Guide

System Compatibility. Enhancements. Operating Systems. Hardware Requirements. Security

Installation and Configuration Guide

ESET SMART SECURITY 6

ESET CYBER SECURITY PRO for Mac Quick Start Guide. Click here to download the most recent version of this document

c360 Portal Installation Guide

Setting up Hyper-V for 2X VirtualDesktopServer Manual

IIS, FTP Server and Windows

OUTLOOK ANYWHERE CONNECTION GUIDE FOR USERS OF OUTLOOK 2010

MailEnable Connector for Microsoft Outlook

Exim4U. Server Solution For Unix And Linux Systems

NAS 224 Remote Access Manual Configuration

INSTALLATION AND CONFIGURATION GUIDE (THIS DOCUMENT RELATES TO MDAEMON v ONWARDS)

ESET NOD32 Antivirus. Table of contents

KASPERSKY LAB. Kaspersky SMTP-Gateway 5.5 for Linux/Unix ADMINISTRATOR S GUIDE

- - Learn More (Please click on one of the links below) What s new? What s changed?

Protected Trust Setup Guide for Brother MFC Devices

Configuration Information

User Guide - escan for Linux File Server

Policy Patrol 7 Upgrade Guide

w e p r o t e c t d i g i t a l w o r l d s ESET NOD32 Antivirus for IBM Lotus Domino Installation

Comodo Antivirus for Linux Software Version 1.0

Using Barracuda Spam Firewall

XGENPLUS SECURITY FEATURES...

602LAN SUITE 5.0 Groupware

Install and Configure Oracle Outlook Connector

Sage 200 Web Time & Expenses Guide

Transcription:

ESET Mail Security & Zarafa 7 infrastructure Integration Whitepaper 20-2-2012 -- version 2.0 Donny Maasland donny@nod32.nl Verified 10-2-2012 Remon van Gijn, Zarafa QA r.vangijn@zarafa.com

ESET Mail Security & Zarafa 7 infrastructure Integration 2 Table of contents Introduction and scope... 3 Download and install... 3 Setting up Zarafa integration... 5 Web interface... 6 Setting up antispam... 7

ESET Mail Security & Zarafa 7 infrastructure Integration 3 Introduction and scope ESET Mail Security for Linux/BSD/Solaris offers lightweight yet powerful protection for heavyduty mail servers based on the Unix platform. This product features ThreatSense, the industry's most accurate proactive technology for detecting all types of malware. The Zarafa 7 collaboration platform offers mail, calendaring, tasks and notes sharing to its users combined with online meeting options. Zarafa uses an open architecture model for its MTA and distributions allowing a fine-tuned integration with various MTA products like Postfix, sendmail and Exim that can be complimented with other elements like ESET Mail Security for Linux. This document describes the ESET setup on a 64 bit system setup using Zarafa 7 with Postfix and ESET Mail Security for Linux as front end SMTP server, resulting in proper detection and movement of malicious mail to Zarafa mail spam folders for recipients. ESET Mail Security for Linux/BSD/Solaris: http://www.eset.com/us/business/products/mail-linux/ Zarafa 7: http://www.zarafa.com/ A business trial license for ESET Mail Security can be acquired via this URL: http://www.nod32.nl/freetrial/ (Note: The page is in dutch, but will be translated soon). A free community edition of Zarafa is enough to perform the functionality described in this whitepaper Download and install *Note: please keep your license details ready. You will need them during the install and configuration of ESET Mail Security Step one is to download the appropriate installation package for your system. All versions can be found here. In this example, we are running Ubuntu Server 10.04.3 LTS, so we will be using esets.amd64.deb.bin: wget http://download.eset.com/download/unix/esets.amd64.deb.bin --user=<eav number> --password=<password> (Replace <eav number> with your license username and <password> with your license password) After the installer finished downloading, run the following, and accept the license agreement: sh esets.amd64.deb.bin Because this is a 64 bit system, the ia32-libs are also needed: aptitude install ia32-libs Install the software: dpkg -i esets-4.0.5.amd64.deb

ESET Mail Security & Zarafa 7 infrastructure Integration 4 Copy the nod32.lic file that came with your license (attached to the license email inside nod32.zip ) to the machine running ESET Mail Security, and import the license file into the product: /opt/eset/esets/sbin/esets_lic --import nod32.lic Edit the ESET configuration file (/etc/opt/eset/esets/esets.cfg) to enable the web interface (optional), and enter the license details. Web interface: [wwwi] # Settings for ESETS Web Interface configuration module # agent_enabled = yes/no # Enables operation of the esets_wwwi. agent_enabled = yes # listen_addr = "address" # Address (IP or name) where esets_wwwi listens for HTTPS client connections. # If set to 0.0.0.0 then esets_wwwi listens on all available network interfaces. listen_addr = "0.0.0.0" # listen_port = port # TCP port where esets_wwwi listens for HTTPS client connections. # You may have to open this port in your firewall. listen_port = 3537 # username and password needed for accessing the interface (required) username = "username" password = "password" Licence details: # # ESETS Update options. # # av_update_server = "server" # ESET server used to update ESETS anti-virus modules, # empty string means - autoselect. #av_update_server = "" # av_update_username = "username" # Username used in authentication against ESET server. av_update_username = "EAV-xxxxxxxx" # av_update_password = "password" # Password used in authentication against ESET server. av_update_password = "password" Update the product to ensure the license details are correct, and install the latest modules: /opt/eset/esets/sbin/esets_update --verbose

ESET Mail Security & Zarafa 7 infrastructure Integration 5 Start the esets_daemon /etc/init.d/esets start Setting up Zarafa integration There are multiple ways to intergrate EMSL into Zarafa, depending on your configuration. In this example Zarafa is configured to use LMTP so the EMSL SMTP agent has to be used. The EMSL SMTP agent receives email on port 25, and relays it to your MTA on another port. To change the listening port on postfix, change the following in /etc/postfix/master.cf: smtp innet n - n - - smtpd to 2525 innet n - n - - smtpd Reload the postfix configuration: /etc/init.d/postfix restart Enable the EMSL SMTP agent and setup the relay by editing the configuration /etc/opt/eset/esets/esets.cfg: [smtp] # Settings for ESETS SMTP filter module. # agent_enabled = yes/no # Enables/disables operation of the esets_smtp. agent_enabled = yes # listen_addr = "address" # Address (IP or name) where esets_smtp listens for SMTP client connections. # If set to 0.0.0.0 then esets_smtp listens on all available network interfaces. listen_addr = "0.0.0.0" # listen_port = port # TCP port where esets_smtp listens for SMTP client connections. listen_port = 25 # server_addr = "address" # Address (IP or name) of the SMTP server where esets_smtp connects to. server_addr = "localhost" # server_port = port # TCP port of the SMTP server where esets_smtp connects to. server_port = 2525 Reload the esets_daemon /etc/init.d/esets restart

ESET Mail Security & Zarafa 7 infrastructure Integration 6 ESET Mail Security for Linux is now integrated with Zarafa, and will check all incoming email for malware. The result will be written to the e-mail headers and the message body. This behaviour can be configured through the web interface or the configuration file: Web interface If the WWWI has been enabled in the esets.cfg file, the web interface can be reached at https://<ip>:<port>/. Note that the esets.cfg file must have credentials set for the web interface to work: All settings regarding ESET Mail Security for Linux can be configured through the web interface. Several things are managed, i.e. licenses, the quarantine (If configured) and statistics:

ESET Mail Security & Zarafa 7 infrastructure Integration 7 Setting up antispam It is also possible to use ESET Mail Security for Linux as an antispam provider for Zarafa. It does this using the mailshell antispam engine. To enable the antispam feature, open the webinterface and navigate to Configuration -> SMTP, and set the Anti-Spam action to scan : Optionally, you can change the antispam profile from the default profile to the most accurate profile. This will allow for better spam detection, but will consume more system resources. This can be done by navigating to Configuration -> Global -> Antispam options -> Antispam profile in the web interface: After saving and applying these settings, EMSL will also scan all incoming email for spam, and add a [SPAM] prefix to the subject if the spam score is high enough:

ESET Mail Security & Zarafa 7 infrastructure Integration 8 In this configuration the spam will be delivered to the user s inbox. If you want to deliver the spam to the Junk E-mail, change the following in /etc/zarafa/dagent.cfg: spam_header_name = X-Spam-Status to spam_header_name = X-ESET-AntiSpam spam_header_value = Yes, to spam_header_value = SPAM Restart zarafa-dagent: /etc/init.d/zarafa-dagent restart Zarafa will now place all spam email in the Junk E-mail folder: