Jump to:navigation, search
Wiki






































Configuration of the UTM's mail connector

Last adaptation to the version: 14.1.0(08.2025)

New:
notempty
This article refers to a Beta version
Access: UTM-IP:Port or UTM-URL:Port
Port as configured at Network / Appliance Settings / Webserver
Default-Port: 11115
i.e.: https://utm.ttt-point.de:11115
Default: https://192.168.175.1:11115
Applications Mail Connector

Introduction

Schematic representation of how the Mail Connector functions

The Mail Connector offers the option of collecting emails from various mail servers via the POP3 and POP3S as well as IMAP and IMAPS protocols and forwarding them to an internal mail server. Forwarding to the internal mail server is done via the SMTP protocol.

  • If there are only mail clients in the internal network that have retrieved the external mail server so far, the Mail Connector cannot be used.


  • Setup to pick up individual accounts

    If a separate email account is configured for each user on the external mail server, a separate Mail Connector service must be created for each account. If a service is created for each additional email account, the minute interval is set in the General ranch under Interval (minutes).
    If the local user accounts are always the same SMTP mail server, this will already be displayed faintly in the field from the second service onwards. You can then save without another entry in this field.



    Configurations

    Services

    Services
    To add a new Mail Connector service, click the Add Mail Connector service button under Applications Mail Connector  Area Services.
    Caption Value Description Add Mail-Connector-Service UTMuser@firewall.name.fqdnApplicationsMail-Connector
    Use OAuth 2: No
    Default
    When Yes is enabled, OAuth 2 is used. The OAuth 2 connection item appears.
    OAuth 2 connection:
  • Hidden by default
  •     An existing OAuth 2 connection is selected. With + a new connection is created.
    Server:     The external mail server from which the emails are fetched
    Protocol: POP3IMAP Here the protocol used to connect to the external server is specified
    User:     Username of the external mailbox.
    If Use OAuth 2 Yes is active, users can be selected from the OAuth source
    Password:
    Hidden if Use OAuth 2 Yes is active.
        Password of the external mailbox
    The password is displayed
    Maximum message size: 20 MB Maximum message size for the Mail Connector
    Multidrop: Off If Multidrop is deactivated, the emails of a mailbox are forwarded to an internal email address. To collect emails for multiple recipients, Multidrop must be enabled.
    When On is enabled, the ranch Multidrop options is enabled.
    Keepmails On Usually emails are deleted after they have been picked up. Enabling of Keepmails prevents this deletion.
  • When activated, external mailboxes can fill up!
    Keepmails should only be used temporarily for test purposes, or if it is otherwise ensured that the external mailbox does not reach its capacity limit.
  • Accept defective header: Off Emails with defective header are included in the Mail Connector
    Check certificates notempty
    New as of: v12.5
    On When activated Ein, the SSL certificates are checked. notempty
    For new connections this is activated by default, for existing connections it is deactivated by default.
    notempty
    If the SSL certificate is rejected during the check because it is no longer valid or trustworthy, no connection is established.
    Encryption: AutoStartTLSSSL Specifies the type of encryption
    TLS version:
    Not when encyrption is: auto
    notempty
    New as of v12.5.1
    TLS1.2 or higher (recommended) The desired TLS version can be selected.
    Destination email address:
    With multidrop deactivated
       
    • Specifies the destination mailbox
    • If an SMTP route already exists for the mail domain in the mail relay, this is automatically suggested as the SMTP mail server
    Destination domain:
    With activated multidrop
        Specifies the destination domain
    SMTP Mailserver:    
    • Specifies the intern mail server to which accepted emails are to be forwarded
    • If the mail domain has not yet been created in the mail relay, an SMTP route is automatically added there notempty
      Attention: If a suggested IP address is changed, the setting in the mail relay is overwritten with the new IP address after consultation!
    Multidrop (Pickup from a collective account)
    Multidrop (Pickup from a collective account)

    If all emails should be stored on the external mail server in a collective mailbox and only assigned to the local user mailboxes when they are collected, these can be set up with the Multidrop option. To do this, activate the Multidrop option for a new service or for an existing one. The following settings are made in the Multidrop options ranch:

    The idea behind multidrop in the Mail Connector is to pick up mails from a CatchAll collective mailbox of an external provider and to deliver them to the individual mailboxes on the company's own mail server. The differentiation of the individual mailboxes via the Mail Connector is done via an envelope header entry in the emails of the collective mailbox. However, this can vary depending on the provider and the mail server used.
    notempty
    Make sure that if the Multidrop is used, the individual mailboxes must also be specified under "Remote User".
    Otherwise the mail connector cannot deliver the mails to the individual mail accounts.
    Envelope-Header: X-Original-To The envelope header entry is selected. It determines which emails from the original recipient with this envelope header entry will be assigned to a local mail account on the internal mail server.
    X-Envelope-To
    Delivered-To
    Envelope-To
    Remote email address: user@mail.com Email address of the original recipient
    Local email address: alice@tttpoint.de Email address of the internal recipient
    Click + to assign
    notempty
    The configuration of OAuth2 connections takes place in a separate menu