SurfControl RiskFilter - E-mail V5.2.4 Administrator’s Guide 17
S
YSTEM
S
ETTINGS
General
2
Generic LDAP
Generic LDAP supports Address Group Import, User Authentication, User Aliases and Recipient
Validation.
To add an Generic LDAP server:
1 Click Add in the User Directories screen.
2Select Generic LDAP.
3 Click Next. The Generic LDAP screen is displayed.
4 Enter the following information:
• Directory ID – The ID of the directory. This field is limited to 64 characters.
• Server Address – The address of your LDAP server.
• Port – The default is 389.
• Enable Secure LDAP – Select the check box if you wish to enable Secure LDAP. This will change
the default port number to 636.
• User Name/ Password – The user name and password for this appliance.
• Base DN – This is the Base DN of the LDAP server when applying the validation filter.
• Search Filter – The search filter is a standard LDAP query and can also use the variables listed.
For example: |(mail=%email%)(user=%user%)(ou=Engineering)
• Mail Field – The field in the LDAP query that contains the e-mail address to be imported.
• Cache Setting – Select the option that corresponds to how you want to treat Address Caching:
– Cache All Addresses – All addresses will be cached.
– Enable Partial Address Caching – This is the default setting. Enter a value into the Maximum
Cache Entry field to specify how many entries should be stored in the memory cache. The
default is 10000.
– Disable Address Caching – No addresses will be cached.
• Cache Timeout - When Cache All Addresses or Enable Partial Address Caching are enabled,
addresses of all e-mails passing through RiskFilter are checked against the validation server. E-
mails from valid addresses are delivered, and the addresses held in cache for a set time. If an e-
mail is sent from a previously validated address within this cache timeout, the e-mail is delivered
without contacting the validation server. However, if another e-mail is sent from this address after
the cache timeout, the server will be contacted again to validate the address. The default is 60
.
5 Click Submit.