User Guide

Contents
xix
AsyncOS 9.1.2 for Cisco Email Security Appliances User Guide
Review: Email Pipeline 24-73
CHAPTER
25 LDAP Queries 25-1
Overview of LDAP Queries 25-1
Understanding LDAP Queries 25-2
Understanding How LDAP Works with AsyncOS 25-3
Configuring the Cisco IronPort Appliance to Work with an LDAP Server 25-4
Creating LDAP Server Profiles to Store Information About the LDAP Server 25-5
Testing LDAP Servers 25-6
Enabling LDAP Queries to Run on a Particular Listener 25-7
Enhanced Support for Microsoft Exchange 5.5 25-9
Working with LDAP Queries 25-12
Types of LDAP Queries 25-12
Base Distinguishing Name (DN) 25-13
LDAP Query Syntax 25-13
Secure LDAP (SSL) 25-14
Routing Queries 25-14
Allowing Clients to Bind to the LDAP Server Anonymously 25-14
Testing LDAP Queries 25-17
Troubleshooting Connections to LDAP Servers 25-18
Using Acceptance Queries For Recipient Validation 25-19
Sample Acceptance Queries 25-19
Configuring Acceptance Queries for Lotus Notes 25-20
Using Routing Queries to Send Mail to Multiple Target Addresses 25-20
Sample Routing Queries 25-21
Using Masquerading Queries to Rewrite the Envelope Sender 25-21
Sample Masquerading Queries 25-22
Masquerading “Friendly Names” 25-22
Using Group LDAP Queries to Determine if a Recipient is a Group Member 25-23
Sample Group Queries 25-23
Configuring a Group Query 25-23
Example: Using a Group Query to Skip Spam and Virus Checking 25-25
Using Domain-based Queries to Route to a Particular Domain 25-26
Creating a Domain-Based Query 25-27
Using Chain Queries to Perform a Series of LDAP Queries 25-28
Creating a Chain Query 25-28
Using LDAP For Directory Harvest Attack Prevention 25-29
Directory Harvest Attack Prevention within the SMTP Conversation 25-29
Directory Harvest Attack Prevention within the Work Queue 25-31