# "Scrub send_orig_email" uses an incorrect domain to send emails

**Product**: Threat Extraction  
**Version**: R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82  
**Last Modified**: 2024-10-24

## Symptoms

- `scrub send_orig_email` sends emails in an invalid format:

_admin@<CheckPointGatewayHostname>.domain.com_

The next hop mail server drops the email because it uses an incorrect domain ( _@hostname.domain_ instead of _@domain_).

## Cause

This is how `$FWDIR/scripts/send_email.sh` is currently configured to handle `send_orig_email` requests.

## Solution

This problem was fixed. The fix is included in:

- [Jumbo Hotfix Accumulator for R81.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) starting from Take 54
- [Jumbo Hotfix Accumulator for R81.10](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/Default.htm) starting from Take 141
- [Jumbo Hotfix Accumulator for R81](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81/Default.htm) starting from Take 99

If you choose not to upgrade, follow these instructions:

Create a new file and use the updated version of the `$FWDIR/scripts/send_email.sh` script to insert the correct sender name in the `send_orig_email` function.

**Procedure:**

1. [Download the modified script](https://support.checkpoint.com/results/download/127781).
2. Backup the current `send_email.sh` file:

`mv $FWDIR/scripts/send_email.sh /var/tmp/send_email.sh.bkp`
3. Move the new `send_email.sh` file:

`mv <Location of the new send_email.sh> $FWDIR/scripts/send_email.sh`
4. Create `$FWDIR/conf/scrub/send_orig_from` and insert the custom sender address:

`cat <Custom Email> > $FWDIR/conf/scrub/send_orig_from`

**Note -** Use an email address with `user@domain` that the next hop mail server recognizes.

Test the procedure with `scrub send_orig_email <ID> <Recipient Address>`

#### NOTE

This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.

## Article Properties

**Access Level**: General  
**Status**: Approved by TAC  
**Date Created**: 2023-05-16  
**Last Modified**: 2024-10-24
