sk180974 - "Scrub send_orig_email" uses an incorrect domain to send emails
"Scrub send_orig_email" uses an incorrect domain to send emails
Product: Threat Extraction
Version: R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82
Last Modified: 2024-10-24
Symptoms
scrub send_orig_emailsends emails in an invalid format:
admin@
The next hop mail server drops the email because it uses an incorrect domain ( @hostname.domain instead of @domain).
Cause
This is how $FWDIR/scripts/send_email.sh is currently configured to handle send_orig_email requests.
Solution
This problem was fixed. The fix is included in:
- Jumbo Hotfix Accumulator for R81.20 starting from Take 54
- Jumbo Hotfix Accumulator for R81.10 starting from Take 141
- Jumbo Hotfix Accumulator for R81 starting from Take 99
If you choose not to upgrade, follow these instructions:
Create a new file and use the updated version of the $FWDIR/scripts/send_email.sh script to insert the correct sender name in the send_orig_email function.
Procedure:
- Download the modified script.
- Backup the current
send_email.shfile:
mv $FWDIR/scripts/send_email.sh /var/tmp/send_email.sh.bkp
3. Move the new send_email.sh file:
mv <Location of the new send_email.sh> $FWDIR/scripts/send_email.sh
4. Create $FWDIR/conf/scrub/send_orig_from and insert the custom sender address:
cat <Custom Email> > $FWDIR/conf/scrub/send_orig_from
Note - Use an email address with user@domain that the next hop mail server recognizes.
Test the procedure with scrub send_orig_email <ID> <Recipient Address>
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.
Article Properties
Access Level: General
Status: Approved by TAC
Date Created: 2023-05-16
Last Modified: 2024-10-24