UTM (Formerly ASG) Feature Requests
Do you have an idea for Sophos UTM? Do you recognize a good idea when you see one? We want to hear from you!
-
MailSecurity: IMAP Proxy
Implement an IMAP proxy. Provides filtering and scanning functionality for those that use this type of mail retrieval. It rounds out our offering to include all 3 of the major ways users access mailboxes.
732 votes -
MailSecurity: support SMIME Domain Certificates for encryption
Being able to encrypt all emails of a specific domain with only a single certificate. This makes message based email encryption an lot easier and astaro more compatible with other email encryption players
194 votes -
Mail Security: Check ZIP / Archive files for blocked extensions
I need, for example, to block exe files. however, the problem with ASG is that if files with blocked extensions are zipped - even without password protect the archive - they pass, because apparently Astaro only checks the zip file extension (rar, zip) and not the extensions of the files inside the archive, which means that you can bypass the blocking of any files by zipping them first. My only option now is to block zipped files which is not so practical as they may contain legitimate content that I don't want to block.
185 votes -
Mail Security: Granular Encryption Control
If a user is enabled to use mail encryption there's currently only the option to sign all of their outgoing mail or nothing.
I'd like to have another option to sign only mails for listed recipients (single [billg@microsoft.com] or domain [*@astaro.com])
157 votes -
SMTP: Multiple Hostnames/Interfaces Support
With the SMTP proxy able to handle mail for many domains, allow the proxy to be configured so that an admin can assign a hostname per profile, or have the proxy report different hostnames per outgoing interface. (and the ability to specify which domains/profiles go out which interface). Allows for easier management and adoption of many smtp domains on a single asg appliance.
154 votes -
Encryption: Logging for this Feature
Please add logging for email encryption / signing feature in Astaro. Actually there is no logging of decryption of incoming mails or encryption / signing of outgoing mails.
104 votes -
Mail Protection: CRL for email encryption Certificate Authority (CA)
Using the ASTARO builtin Certificate Authority (CA) for creating certificates for external mailboxes, you should have a CRL (Certificate Revocation List) for certificates that have been revoked or are no longer valid, and therefore should not be relied upon. It is like the CRL you can use to disable a certificate in the "Remote Access" section of the ASG.
81 votes -
Mail Encryption: One-Way / Clientless ( SPX )
A system whereby customers can encrypt messages with the recipient having no in-place method to decrypt them, such as is currently possible with Smime/pgp setups.. Allows encryption to satisfy needs of many companies that do not havfe setup relationships with key exchanges and such, like Health Care, Government, Education etc... it should be very easy to use.
76 votesWe tentatively plan to include this in our UTM 9.2 release later in 2013.
-
Mail Protection: Attachment Stripping
currently, there are several "action" options in the smtp anti-malware section: warn, blackhole, quarantine, and reject.
We should have a "remove attachment" option which means the unwanted (infected or dangerous) attachment is stripped off the mail, but the rest of the mail is forwarded to the recipient.
Two things are achieved with this: the recipient is informed immediately about the mail (he doesn´t have to wait for the next quarantine report). And he can see that a mail from a possibily importand business contact has been blocked and see at least the "uncritical" content71 votes -
Mail Security: Show Deferred Mails in Mail Manager/UserPortal (eg. Greylisted)
If a incoming Mail is delayed by Grey listing, this is not viewable in the Mail Manager. This is a Problem in Environments where End users really use the End User Portal for tracking their Mail.
In the End it has to be reviewed by the Admin again because you can only find out these Mails in the smtp-proxy Logfile.69 votes -
Mail Protection: Forward POP3 Emails via SMTP to internal Server
There are still a many customers out there which use POP3 Mailboxes. If a customer want's to connect these POP3 mailboxes to an internal Microsoft Exchange server, they always need to purchase an add-on tool which needs to be licensed on a per user basis. The tool downloads the POP3 Emails and forwards them 1:1 to the internal Server via SMTP. Each POP3 Mailbox needs to be configured via server, username and password and an SMTP email address where the email gets forwarded to.. Integrate this add-on feature and minimize the cost and effort needed to install, manage and maintain…
60 votes -
Mail Protection: SMTP smarthost test button
Troubleshooting SMTP Smarthost problems with authentication is hard to do. After changing config you need to send test mails to an outside domain and have to watch logging.
Please add a test-button that can report:
1. no connection (IP:Port not listening)
2. connected, but user unknown (550)
3. connected, but wrong password
4. success59 votes -
Mail Protection: Multiple times for Quarantine Digest delivery
Please add the ability to specify more than 2 time times for sending the quarantine report.
51 votes -
Mail Protection: Configure Interface/IP SMTP proxy listens on
Enabling the mail-security features presently opens up a massive surface area on all interfaces and ips. I would like to see the mail-security feature include a more assignable approach where we can choose what interfaces/ips the mail-security will bind to.
As we are a hosted service provider, the all or nothing functionality currently available is not ideal.
49 votes -
SMTP Mail Address Rewriting
It is often useful to forward or rewrite incoming mail domains or specific email addresses to a user or usergroups. It would be great if the feature would be possible. For example *@domain-A.de forward to hans.muster@meinefirma.de, or all messages from info@domaene-B.de forward to Felix.Hubert@meinefirma.de, Felix.Hubert@Firma-A.de forward to Felix.Hubert@meinefirma.de etc. or the appropriate domain that accept Astaro
46 votes -
Mail Protection: Report message as SPAM via Mail Log in UserPortal
Users would like the ability to report any spam that makes it to their inbox. Ideally, there would be a "report" button or link right in the users mail log next to every message that is delivered to the inbox. For quick-picking, it would be nice to have a button for "CONFIRM" to the mail quarantine digest too.
44 votes -
Mail Protection: Non-delivery report for blocked Outgoing messages
In my opinion its useful to receive a Non Delivery report for outgoing sended emails. Blocked file extensions like .exe or .bat will block ANY directions of mails (extern to intern and also intern to extern).
These messages will be quarantined however internal users will not receive any information about that like an NDR. He belief, that the mail was delivered correctly.
44 votes -
Mail Protection: Add "delete" and "blacklist" buttons (to the current "release" and "whitelist") to quarantine digest email
This would make user blacklisting significantly easier and reduce the amount of email held in the quarantine .
42 votes -
Mail Protection: Configurable SMTP proxy port
Allow the SMTP proxy to be configured to run on a port other than 25, for users with ISP blocks on port 25 traffic.
40 votes -
Mail Security: Auto-whitelist Recipients of Outgoing Email Messages
All emails sent by internal users or from internal mail servers have their recipient addresses added to the MailSecuriy's whitelist.
That way if you send someone an email, you know that their reply will not be blocked.
38 votes
- Don't see your idea?