Replace IP's with Spam Experts delivery IP's which can be found here:
- Create an object called Spam Experts in configuration mode
- Add the hosts of the delivery servers
- Add a firewall rule on the incoming WAN interface with the object
In the example below, we called it
fw01# configure terminal
fw01(config)# object-group network SpamExperts# fw01(config-network-group)# host 10.0.0.1 host 10.0.0.2 host 10.0.0.3 -SNIP--
fw01(config)# ip access-list extended ACL_WAN_IN permit tcp object-group SpamExperts host [INSERT WAN IP ADDRESS HERE AND REMOVE BRACKETS] eq smtp
The above assumes that an ACL is applied on the Public WAN interface named ACL_WAN_IN and that the default rule is set to 'deny ip any any' and that you add the permit before the deny.
To add more IPs after initial config you can do the following:
fw01# configure terminal fw01(config)# object-group network SpamExperts fw01(config-network-group)#
host [IP ADDRESS]
IPs should be replaced with your clusters delivery IPs
Disclaimer: This documentation may contain references to third party software or websites. N-able has no control over third party software or content and is not responsible for the availability, security, or operation, of any third-party software. If you decide to utilize a release involving third-party software, you do so entirely at your own risk and subject to the applicable third party’s terms and conditions of the use of such software. No information obtained by you from N-able or this documentation shall create any warranty for such software.