Configuring profiles : Configuring session profiles : Configuring connection settings
Configuring connection settings
This procedure is part of the session profile configuration process. For general procedures about how to configure a session profile, see “Configuring session profiles”.
1. Go to Profile > Session.
2. Click New to create a new session profile or double click on an existing profile to edit it.
3. Expand the Connection Settings section if needed. The options vary with the operation mode.
4. Configure the following options to restrict the number and duration of connections to the FortiMail unit. When any of these limits are exceeded, the FortiMail unit blocks further connections. Setting any of these values to 0 disables the limit.
 
GUI item
Description
Hide this box from the mail server
(transparent mode only)
Enable to preserve the IP address or domain name of the SMTP client in:
the SMTP greeting (HELO/EHLO) and in the Received: message headers of email messages
the client IP in email header
This masks the existence of the FortiMail unit.
Disable to replace the IP addresses or domain names with that of the FortiMail unit.
Note: Unless you enabled Take precedence over recipient based policy match in the IP-based policy, the Hide the transparent box option in the protected domain supersedes this option, and may prevent it from applying to incoming email messages.
Note: For full transparency, also enable “Hide the transparent box”.
Restrict the number of connections per client per 30 minutes to
Specify the maximum connections per client IP address in a period of 30 minutes.
Restrict the number of messages per client per 30 minutes to
Specify the maximum email messages (number of MAIL FROM) a client can send in a period of 30 minutes.
Restrict the number of recipients per client per 30 minutes to
Specify the maximum recipients (number of RCPT TO) a client can send email to for a period of 30 minutes.
Maximum concurrent connections for each client
Enter the maximum number of concurrent connections per client.
Connection idle timeout (seconds)
Enter a limit to the number of seconds a client may be idle before the FortiMail unit drops the connection.
Do not let client connect to blocklisted SMTP servers
(transparent mode only)
Enable to prevent clients from connecting to SMTP servers that have been blocklisted in antispam profiles or, the FortiGuard AntiSpam service if enabled.