Installation Guide
Page 2
... are trademarks or registered trademarks of Symantec Corporation. Voice +1 408 517 8000 http://www.symantec.com Symantec Brightmail AntiSpam™ Version 6.0.2 Installation Guide Document Version 1.0 Brightmail, the Brightmail logo, BLOC, BrightSig, Probe Network and The Anti-Spam Leader are U.S. Symantec Brightmail AntiSpam is a trademark of Symantec Corporation. All rights reserved. For third party notices, see Appendix B, "Third Party Licenses," on page...
... are trademarks or registered trademarks of Symantec Corporation. Voice +1 408 517 8000 http://www.symantec.com Symantec Brightmail AntiSpam™ Version 6.0.2 Installation Guide Document Version 1.0 Brightmail, the Brightmail logo, BLOC, BrightSig, Probe Network and The Anti-Spam Leader are U.S. Symantec Brightmail AntiSpam is a trademark of Symantec Corporation. All rights reserved. For third party notices, see Appendix B, "Third Party Licenses," on page...
Installation Guide
Page 3
... Contents Symantec Brightmail AntiSpam Overview 1 What's New in Symantec Brightmail AntiSpam 2 Symantec Brightmail AntiSpam Architecture Overview 3 Brightmail Scanner 4 Brightmail Control Center 5 Group Policies, Email Categories, and Filtering Actions 6 Brightmail Filters 8 AntiSpam Filters 8 Content Filters 9 Blocked and Allowed Senders Lists 9 AntiVirus Filters 10 Brightmail Conduit 11 Brightmail Quarantine 11 Spam Foldering and Submissions 11 Installation Sequence 12 Installing Brightmail Scanner for Sendmail 15 Preparing to Install Brightmail Scanner...
... Contents Symantec Brightmail AntiSpam Overview 1 What's New in Symantec Brightmail AntiSpam 2 Symantec Brightmail AntiSpam Architecture Overview 3 Brightmail Scanner 4 Brightmail Control Center 5 Group Policies, Email Categories, and Filtering Actions 6 Brightmail Filters 8 AntiSpam Filters 8 Content Filters 9 Blocked and Allowed Senders Lists 9 AntiVirus Filters 10 Brightmail Conduit 11 Brightmail Quarantine 11 Spam Foldering and Submissions 11 Installation Sequence 12 Installing Brightmail Scanner for Sendmail 15 Preparing to Install Brightmail Scanner...
Installation Guide
Page 4
... Uninstalling Brightmail Control Center on UNIX 73 Uninstalling Brightmail Control Center on Windows 73 Control Center Testing and Configuration 75 Testing Installation of the Brightmail Control Center 76 Reviewing the Installation Log 76 Logging in and Logging out 76 Checking Versions 76 Adding a Brightmail Scanner 77 Starting a Brightmail Scanner from the Brightmail Control Center . . 78 iv Symantec Brightmail AntiSpam...
... Uninstalling Brightmail Control Center on UNIX 73 Uninstalling Brightmail Control Center on Windows 73 Control Center Testing and Configuration 75 Testing Installation of the Brightmail Control Center 76 Reviewing the Installation Log 76 Logging in and Logging out 76 Checking Versions 76 Adding a Brightmail Scanner 77 Starting a Brightmail Scanner from the Brightmail Control Center . . 78 iv Symantec Brightmail AntiSpam...
Installation Guide
Page 5
... 105 Appendix A: Symantec Brightmail AntiSpam Files 107 Brightmail Scanner on UNIX 108 Brightmail Scanner, Complete (Brightmail Server, Brightmail Client 108 Brightmail Scanner Installation with Brightmail Server Only . . . . . 113 Brightmail Scanner Installation with Brightmail Client Only . . . . . 118 Brightmail Scanner on Windows 120 Brightmail Scanner, Complete (Brightmail Server, Brightmail Client 120 Brightmail Scanner Installation with Brightmail Server Only . . . . . 127 Brightmail Scanner Installation with Brightmail Client Only . . . . . 132 Brightmail Control Center on...
... 105 Appendix A: Symantec Brightmail AntiSpam Files 107 Brightmail Scanner on UNIX 108 Brightmail Scanner, Complete (Brightmail Server, Brightmail Client 108 Brightmail Scanner Installation with Brightmail Server Only . . . . . 113 Brightmail Scanner Installation with Brightmail Client Only . . . . . 118 Brightmail Scanner on Windows 120 Brightmail Scanner, Complete (Brightmail Server, Brightmail Client 120 Brightmail Scanner Installation with Brightmail Server Only . . . . . 127 Brightmail Scanner Installation with Brightmail Client Only . . . . . 132 Brightmail Control Center on...
Installation Guide
Page 7
... to remove unwanted mail before they inconvenience your users and overwhelm or damage your networks. Symantec Brightmail AntiSpam software filters email in Symantec Brightmail AntiSpam • Symantec Brightmail AntiSpam Architecture Overview • Group Policies, Email Categories, and Filtering Actions • Brightmail Filters • Brightmail Conduit • Brightmail Quarantine • Spam Foldering and Submissions • Installation Sequence Installation Guide 1 This section contains the...
... to remove unwanted mail before they inconvenience your users and overwhelm or damage your networks. Symantec Brightmail AntiSpam software filters email in Symantec Brightmail AntiSpam • Symantec Brightmail AntiSpam Architecture Overview • Group Policies, Email Categories, and Filtering Actions • Brightmail Filters • Brightmail Conduit • Brightmail Quarantine • Spam Foldering and Submissions • Installation Sequence Installation Guide 1 This section contains the...
Installation Guide
Page 8
... is a Web-based cross-platform configuration and administration center built in Symantec Brightmail AntiSpam Symantec Brightmail AntiSpam Version 6.0 provides the following components: Brightmail Server, Brightmail Client. These components are now separated into two groups: antispam reports and antivirus reports. and the next generation of the Brightmail Reputation Service. You can now specify an unlimited number of your messages using the...
... is a Web-based cross-platform configuration and administration center built in Symantec Brightmail AntiSpam Symantec Brightmail AntiSpam Version 6.0 provides the following components: Brightmail Server, Brightmail Client. These components are now separated into two groups: antispam reports and antivirus reports. and the next generation of the Brightmail Reputation Service. You can now specify an unlimited number of your messages using the...
Installation Guide
Page 9
...attacks. Symantec Brightmail AntiSpam heuristic filters are designed to the Brightmail Logistics and Operations Center (BLOCTM) for new variations of heuristic filters, which target patterns common in false positives. Symantec Brightmail AntiSpam Overview Symantec Brightmail AntiSpam Architecture Overview Using Brightmail AntiSpam, you... is verified as a spam filter. The BLOC consists of automation and human intervention allows Symantec Brightmail AntiSpam to Brightmail Scanners on three continents, comprising a round-the-clock protection network that isolate similar messages....
...attacks. Symantec Brightmail AntiSpam heuristic filters are designed to the Brightmail Logistics and Operations Center (BLOCTM) for new variations of heuristic filters, which target patterns common in false positives. Symantec Brightmail AntiSpam Overview Symantec Brightmail AntiSpam Architecture Overview Using Brightmail AntiSpam, you... is verified as a spam filter. The BLOC consists of automation and human intervention allows Symantec Brightmail AntiSpam to Brightmail Scanners on three continents, comprising a round-the-clock protection network that isolate similar messages....
Installation Guide
Page 10
Symantec Brightmail AntiSpam Overview Brightmail Scanner Each installation of Symantec Brightmail AntiSpam. A Brightmail Server - Symantec Brightmail AntiSpam Overview Figure 1 shows an overview of Symantec Brightmail AntiSpam can have one or more Brightmail Scanners. Brightmail Scanners perform the actual filtering of the following: - A Brightmail Client. Figure 1. If the Brightmail Scanner contains a Brightmail Client, then a supported mail transfer agent (MTA) must also reside on the same computer. 4 Symantec Brightmail AntiSpam™ Each Brightmail Scanner contains: ...
Symantec Brightmail AntiSpam Overview Brightmail Scanner Each installation of Symantec Brightmail AntiSpam. A Brightmail Server - Symantec Brightmail AntiSpam Overview Figure 1 shows an overview of Symantec Brightmail AntiSpam can have one or more Brightmail Scanners. Brightmail Scanners perform the actual filtering of the following: - A Brightmail Client. Figure 1. If the Brightmail Scanner contains a Brightmail Client, then a supported mail transfer agent (MTA) must also reside on the same computer. 4 Symantec Brightmail AntiSpam™ Each Brightmail Scanner contains: ...
Installation Guide
Page 11
...; Monitor consolidated reports and logs for all of users or for all Brightmail Scanners. • See summary information. • Administer Brightmail Quarantine. • View online help for requests from Brightmail Clients. Each Brightmail Server is a communications channel between Brightmail Servers. Brightmail Control Center Each Symantec Brightmail AntiSpam installation has exactly one can : • Configure, start and stop each one...
...; Monitor consolidated reports and logs for all of users or for all Brightmail Scanners. • See summary information. • Administer Brightmail Quarantine. • View online help for requests from Brightmail Clients. Each Brightmail Server is a communications channel between Brightmail Servers. Brightmail Control Center Each Symantec Brightmail AntiSpam installation has exactly one can : • Configure, start and stop each one...
Installation Guide
Page 12
Figure 2. Symantec Brightmail AntiSpam Components Group Policies, Email Categories, and Filtering Actions Symantec Brightmail AntiSpam provides a wide variety of actions for filtering email, and allows you to either set identical options for all users, or specify different actions for the Brightmail Control Center and Brightmail Quarantine. Figure 2 shows the major components of users. 6 Symantec Brightmail AntiSpam™ Symantec Brightmail AntiSpam Overview Server) performs Web hosting functions for different groups of Symantec Brightmail AntiSpam installed at your site.
Figure 2. Symantec Brightmail AntiSpam Components Group Policies, Email Categories, and Filtering Actions Symantec Brightmail AntiSpam provides a wide variety of actions for filtering email, and allows you to either set identical options for all users, or specify different actions for the Brightmail Control Center and Brightmail Quarantine. Figure 2 shows the major components of users. 6 Symantec Brightmail AntiSpam™ Symantec Brightmail AntiSpam Overview Server) performs Web hosting functions for different groups of Symantec Brightmail AntiSpam installed at your site.
Installation Guide
Page 13
...via the Web. • Route messages to each cleaned message normally, with viruses - Symantec Brightmail AntiSpam identifies mass-mailing worm emails as spam, either by altering the subject line or by AntiSpam Filters. • Email from blocked senders - You can also specify trusted senders by ... these messages. • Custom filtered emails - The lists included in email messages. They may or may not contain viruses. Symantec Brightmail AntiSpam Overview You can specify one of up to eight different filtering options. These are used by default. For each group, you can...
...via the Web. • Route messages to each cleaned message normally, with viruses - Symantec Brightmail AntiSpam identifies mass-mailing worm emails as spam, either by altering the subject line or by AntiSpam Filters. • Email from blocked senders - You can also specify trusted senders by ... these messages. • Custom filtered emails - The lists included in email messages. They may or may not contain viruses. Symantec Brightmail AntiSpam Overview You can specify one of up to eight different filtering options. These are used by default. For each group, you can...
Installation Guide
Page 14
...; Header Filters Heuristic Filters - These tests search for contact information or purchasing instructions. Using heuristics, Symantec Brightmail AntiSpam software can use a one-sizefits-all approach to the needs of filtering strategies, based on specific URLs...8 Symantec Brightmail AntiSpam™ URL Filters - Symantec's URL Filters catch messages based on the specific type of filters: • AntiSpam Filters - As a result, these URLs appear to obfuscate and disguise them. Symantec Brightmail AntiSpam Overview Brightmail Filters Symantec Brightmail AntiSpam employs ...
...; Header Filters Heuristic Filters - These tests search for contact information or purchasing instructions. Using heuristics, Symantec Brightmail AntiSpam software can use a one-sizefits-all approach to the needs of filtering strategies, based on specific URLs...8 Symantec Brightmail AntiSpam™ URL Filters - Symantec's URL Filters catch messages based on the specific type of filters: • AntiSpam Filters - As a result, these URLs appear to obfuscate and disguise them. Symantec Brightmail AntiSpam Overview Brightmail Filters Symantec Brightmail AntiSpam employs ...
Installation Guide
Page 15
...blocked senders lists and third party allowed senders lists - Subscribers Installation Guide 9 Unless AntiVirus Filters detect a virus or worm, Symantec Brightmail AntiSpam treats mail coming from an address or connection in spam messages (similar to messages from known spammers. Many of such a...DNA, more spam can use the same action on custom- Such insecure relays and ports are approved or trusted senders. Symantec Brightmail AntiSpam Overview Signature Filters - You have three sets of choices for sending unsolicited bulk email. DNS blacklists allow subscribers to ...
...blocked senders lists and third party allowed senders lists - Subscribers Installation Guide 9 Unless AntiVirus Filters detect a virus or worm, Symantec Brightmail AntiSpam treats mail coming from an address or connection in spam messages (similar to messages from known spammers. Many of such a...DNA, more spam can use the same action on custom- Such insecure relays and ports are approved or trusted senders. Symantec Brightmail AntiSpam Overview Signature Filters - You have three sets of choices for sending unsolicited bulk email. DNS blacklists allow subscribers to ...
Installation Guide
Page 16
... simply aggregate information and are frequently outdated, the Brightmail Reputation Service lists are downloaded to your site. Symantec Brightmail AntiSpam also provides protection against three lists, all other filters. - Virus experts at Symantec Security Response (SSR) provide up go into AntiVirus...references to antivirus functions assume you can instruct the Brightmail Scanner to delete the message or to clean and then deliver the message. Brightmail Reputation Service Lists: By default, Symantec Brightmail AntiSpam is brought offline or secured. If filtering detects one...
... simply aggregate information and are frequently outdated, the Brightmail Reputation Service lists are downloaded to your site. Symantec Brightmail AntiSpam also provides protection against three lists, all other filters. - Virus experts at Symantec Security Response (SSR) provide up go into AntiVirus...references to antivirus functions assume you can instruct the Brightmail Scanner to delete the message or to clean and then deliver the message. Brightmail Reputation Service Lists: By default, Symantec Brightmail AntiSpam is brought offline or secured. If filtering detects one...
Installation Guide
Page 17
... identifying line in each user's spam folder. Filter updates are deleted automatically by the Brightmail Control Center, which aggregates the statistics from Brightmail Scanners to check their spam messages in the Symantec Brightmail AntiSpam MySQL database on each Brightmail Scanner that the Brightmail Scanner identifies as an attachment to create filters. A Notifier process periodically sends users a reminder...
... identifying line in each user's spam folder. Filter updates are deleted automatically by the Brightmail Control Center, which aggregates the statistics from Brightmail Scanners to check their spam messages in the Symantec Brightmail AntiSpam MySQL database on each Brightmail Scanner that the Brightmail Scanner identifies as an attachment to create filters. A Notifier process periodically sends users a reminder...
Installation Guide
Page 18
... most, enterprise installations. "Operating System Compatibility," on page 58 2 Install at least one Brightmail Scanner as described in "Installing Brightmail Control Center on UNIX," on page 60 or "Installing Brightmail Control Center on Windows," on page 67. 12 Symantec Brightmail AntiSpam™ The Symantec Plug-in for this purpose: - "Create Required Accounts and Directories," on page 15...
... most, enterprise installations. "Operating System Compatibility," on page 58 2 Install at least one Brightmail Scanner as described in "Installing Brightmail Control Center on UNIX," on page 60 or "Installing Brightmail Control Center on Windows," on page 67. 12 Symantec Brightmail AntiSpam™ The Symantec Plug-in for this purpose: - "Create Required Accounts and Directories," on page 15...
Installation Guide
Page 19
Symantec Brightmail AntiSpam Overview 4 Add a Brightmail Scanner using the Brightmail Control Center as described in "Adding a Brightmail Scanner," on page 77. 5 Make sure the Brightmail Scanner can be turned on by the Brightmail Control Center as described in "Starting a Brightmail Scanner from the Brightmail Control Center," on page 78. 6 Test that filtering is working as described in "Testing Symantec Brightmail AntiSpam Filtering," on page 78. Installation Guide 13
Symantec Brightmail AntiSpam Overview 4 Add a Brightmail Scanner using the Brightmail Control Center as described in "Adding a Brightmail Scanner," on page 77. 5 Make sure the Brightmail Scanner can be turned on by the Brightmail Control Center as described in "Starting a Brightmail Scanner from the Brightmail Control Center," on page 78. 6 Test that filtering is working as described in "Testing Symantec Brightmail AntiSpam Filtering," on page 78. Installation Guide 13
Installation Guide
Page 21
... 21. UltraSPARC processor - 512 MB RAM minimum (1 GB or more recommended) - 250 MB disk space minimum (1 GB or more recommended) Installation Guide 15 Brightmail Scanner contains the Brightmail Agent and also contains either a Brightmail Server, a Brightmail Client or both a Brightmail Server and a Brightmail Client. The following sections for information on how best to prepare for each...
... 21. UltraSPARC processor - 512 MB RAM minimum (1 GB or more recommended) - 250 MB disk space minimum (1 GB or more recommended) Installation Guide 15 Brightmail Scanner contains the Brightmail Agent and also contains either a Brightmail Server, a Brightmail Client or both a Brightmail Server and a Brightmail Client. The following sections for information on how best to prepare for each...
Installation Guide
Page 22
...communication. For registration and ongoing operations, Symantec Brightmail AntiSpam communicates with the BLOC 16 Symantec Brightmail AntiSpam™ Solaris 8 or 9 For Solaris 8, patch 112438 is supported for Solaris is required to install Symantec Brightmail AntiSpam. You can use during installation You ...or more recommended) - 250 MB disk space minimum (1 GB or more recommended) For more information, see the Symantec Brightmail AntiSpam Deployment Planning Guide. Red Hat Enterprise Linux ES 3.0 For Linux installations, the Installer requires the compat-libstdc++ library...
...communication. For registration and ongoing operations, Symantec Brightmail AntiSpam communicates with the BLOC 16 Symantec Brightmail AntiSpam™ Solaris 8 or 9 For Solaris 8, patch 112438 is supported for Solaris is required to install Symantec Brightmail AntiSpam. You can use during installation You ...or more recommended) - 250 MB disk space minimum (1 GB or more recommended) For more information, see the Symantec Brightmail AntiSpam Deployment Planning Guide. Red Hat Enterprise Linux ES 3.0 For Linux installations, the Installer requires the compat-libstdc++ library...
Installation Guide
Page 23
...changes to the build configuration file in the Sendmail directory and build a new version of message bodies may undermine Symantec Brightmail AntiSpam's effectiveness. NOTE: Symantec Brightmail AntiSpam's ability to identify spam accurately depends on page 33. If you have the Sendmail source, you can create .... 2 Change to MILTER, then your Sendmail installation has the required Milter support and you see "Configuring Sendmail for the Brightmail Filter," on having access to allow outbound connections. You can find it doesn't exist. 3 Add the following configuration document...
...changes to the build configuration file in the Sendmail directory and build a new version of message bodies may undermine Symantec Brightmail AntiSpam's effectiveness. NOTE: Symantec Brightmail AntiSpam's ability to identify spam accurately depends on page 33. If you have the Sendmail source, you can create .... 2 Change to MILTER, then your Sendmail installation has the required Milter support and you see "Configuring Sendmail for the Brightmail Filter," on having access to allow outbound connections. You can find it doesn't exist. 3 Add the following configuration document...