User's Manual
Table Of Contents
- Finding your way around
- System Settings
- Policy Manager
- The Policy Manager tab
- Creating a Policy
- Address Group
- Queue Manager
- Dictionary Manager
- Global Policy
- Creating a new Sub-policy
- Editing a sub-policy
- Adding Filters to the policy
- Defining a filter
- The Anti-Virus Agent Filter
- The Anti-Spam Agent Filters
- Internet Threat Database Filter
- Standard Disclaimer
- General Content Filter
- advanced content filter
- Message Attachment Filter
- Content Guardian
- Dictionary Threshold Filter
- Key Points
- Reports & Logs
- RiskFilter System Management Console
- Appendix
- INDEX
- Notices

SurfControl RiskFilter - E-mail V5.2.4 Administrator’s Guide 17
S
YSTEM
S
ETTINGS
General
2
Generic LDAP
Generic LDAP supports Address Group Import, User Authentication, User Aliases and Recipient
Validation.
To add an Generic LDAP server:
1 Click Add in the User Directories screen.
2Select Generic LDAP.
3 Click Next. The Generic LDAP screen is displayed.
4 Enter the following information:
• Directory ID – The ID of the directory. This field is limited to 64 characters.
• Server Address – The address of your LDAP server.
• Port – The default is 389.
• Enable Secure LDAP – Select the check box if you wish to enable Secure LDAP. This will change
the default port number to 636.
• User Name/ Password – The user name and password for this appliance.
• Base DN – This is the Base DN of the LDAP server when applying the validation filter.
• Search Filter – The search filter is a standard LDAP query and can also use the variables listed.
For example: |(mail=%email%)(user=%user%)(ou=Engineering)
• Mail Field – The field in the LDAP query that contains the e-mail address to be imported.
• Cache Setting – Select the option that corresponds to how you want to treat Address Caching:
– Cache All Addresses – All addresses will be cached.
– Enable Partial Address Caching – This is the default setting. Enter a value into the Maximum
Cache Entry field to specify how many entries should be stored in the memory cache. The
default is 10000.
– Disable Address Caching – No addresses will be cached.
• Cache Timeout - When Cache All Addresses or Enable Partial Address Caching are enabled,
addresses of all e-mails passing through RiskFilter are checked against the validation server. E-
mails from valid addresses are delivered, and the addresses held in cache for a set time. If an e-
mail is sent from a previously validated address within this cache timeout, the e-mail is delivered
without contacting the validation server. However, if another e-mail is sent from this address after
the cache timeout, the server will be contacted again to validate the address. The default is 60
.
5 Click Submit.