Hello all,
Looking for a suggestion on the following.
Requirement:
DLP policy enforcement for outbound SMTP Traffic to G Suite mail relay located on internet.
Setup:
R80.10 Distributed setup
HTTPS inspection not enabled.
Description:
The Mail Relay is located at mail-relay.google.com as customer has a G Suite setup.
We have enabled SMTP protocol under DLP configuration but could not set the mail server as the relay server IP is dynamic in nature.
Not able to add the FQDN address to Mail Server object.
DLP policy is currently not enforced with this configuration.
Is it possible to achieve this requirement without an internal mail server?
Or should the customer setup an on premise mail relay to enforce DLP policy?
Please find the attachment for the required topology.
Thanks!
Arun Kumar S
Security Engineer
QOS Technology.
Prabulingam N