Skip to main content

Add your mailboxes to Email Security

Important

If you have shared mailboxes, you need to Exclude synchronized Azure Active Directory mailboxes from billing.

Add your user mailboxes to GravityZone Security for Email . Each mailbox is associated to a user.

The following methods are available for importing your Mailboxes:

Note

This procedure is meant for use with a .csv file downloaded from Microsoft Exchange Online, however you can also use a manually created .CSV file.

  1. In Microsoft Exchange Online go to Exchange Admin Center.

  2. Go to the Mailboxes page.

    microsoft_exchange_mailboxes_selection_89009_en.png
  3. Select Export mailboxes option from the top of the mailbox list.

    microsoft_exchange_mailboxes_export_mailboxes_89009_en.png
  4. Go back to Products > Mailboxes in Email Security.

  5. Click the emailsecurityimport.png Import button in the upper right side of the screen.

    The following window will appear:

    EMS_mailboxes_import_mailboxes_window_89009_en.png
  6. Click Browse and select the CSV file exported from Microsoft Exchange Online.

  7. Click the Import button.

A window will appear with the results of the import:

EMS_mailboxes_import_mailboxes_window_status_89009_en.png

Important

Mailboxes will fail to import if:

  • If the email addresses not part of a domain that Email Security is tracking.

    Note

    You can add new domains from the Product Configuration page.

  • The email addresses are associated with already existing users, as a primary email address or an alias.

  • The information in the .CSV file has an invalid format or does not meet its requirements.

Manually creating a .CSV file

You create your own .CSV file rather than download it from Exchange Online. You can build your file in Notepad++ or Excel.

Important

If you using Excel to create the file, do not enclose the headers nor their values in quotes.

For a file to be imported in the EMS console, it must meet these requirements:

  • A column with the "EMAIL ADDRESS" header, containing an email address in a valid format.

  • A column with the "MAILBOX TYPE" header. The value here must be either User or Group (use the Group value for shared mailboxes).

You can add more headers depending on each organization needs, including aliases. See the below examples:

Example 4. Only the required columns
"EMAIL ADDRESS","MAILBOX TYPE"
"[email protected]","User"


Example 5. The required columnsand real names for better tracking
"FIRST NAME","LAST NAME","MAILBOX TYPE","EMAIL ADDRESS"
"David","Smith","User","[email protected]"


Example 6. The required columns, real names, and aliases
"FIRST NAME","LAST NAME","MAILBOX TYPE","EMAIL ADDRESS","EMAIL ADDRESSES"
"David","Smith","User","[email protected]","smtp:[email protected]"


This method involves performing an Azure Active Directory synchronization and adding a domain to GravityZone Security for Email.

Tip

For additional information on synchronizing Active Directory, including requirements and general information, refer to Active Directory

Note

Before adding a domain make sure it is configured in the Product Configuration > Domains section.

  1. Click the Add domainemailsecadd.png button on the upper right of the screen and select Azure Active Directory.

    129289_1.png
  2. Enter a name under Domain. This will be used to identify this domain in the list shown in the Active Directory screen.

  3. Add your AzureAD tenant name under Tenant Name.

    Note

    For information on how to find your tenant name refer to this Microsoft kb article.

    Important

    You only need one Azure synchronization item. You can use it for all your domains.

  4. (optional) Enter a specific NetBIOS name under NetBIOS. This will only import date from a specific NetBIOS domain instead of searching automatically.

  5. (optional) Check the Only synchronize users with this attribute set box and enter the attribute name and value. This will only import the users that have this specific attribute to Email Security.

  6. (optional) Check the Only synchronize groups with this attribute set box and enter the attribute name and value. This will only import the groups that have this specific attribute to Email Security.

  7. Click the Add domain button in the upper right side of the screen.

    129289_2.png

Tip

For additional information on synchronizing Active Directory, including requirements and general information, refer to Active Directory

This method involves performing an On Premise Active Directory synchronization and adding a domain to GravityZone Security for Email.

Note

Before adding a domain make sure it is configured in the Product Configuration > Domains section.

  1. Click the Add domainemailsecadd.png button on the upper right of the screen and select On Premise Active Directory.

    129678_5.png
  2. Fill in the domain information:

    1. Enter a name under Domain. This will be used to identify this domain in the list shown in the Active Directory screen.

    2. Under Server Hostname enter the DNS name of the domain, or the hostname or IP address of a specific domain controller.

      Note

      To use the server where the AD Connect software is installed enter localhost.

    3. Enter a valid Username and Password to connect to your domain.

    4. (optional) If you don't want to sync all the domain, uncheck the Sync Entire Domain box and enter a Enter a base DN to use as the root of the search.

    5. (optional) If you don't want to automatically detect NetBIOS names, uncheck the Automatically Detect box and enter a specific NetBIOS name to use.

    6. (optional) Check the Only synchronise users with this attribute set box and enter the attribute name and value. This will only import the users that have this specific attribute to Email Security.

      Note

      You may specify multiple values using a semi-colon separator. For example:

      attribute name = officeLocation value = London;Paris
    7. Click the Add domain button.

      129678_7.psd
  3. Click the Generate key button.

    129678_8.png
  4. Click the Add API key button.

    129678_9.png
  5. Copy the provided Client ID and Client Secret.

    129678_10.png
  6. Use the credentials to configure AD Connect.

    Note

    To configure AD Connect you need to use the AD Connect Setup Tool, which is added automatically as part of the AD Connect installation.

To manually add the Mailboxes follow the steps below:

  1. Go to Products > Email Security > Mailboxes.

    75100_5.png
  2. Click the Add button and add an email address.

    75100_7.png

    Note

    A real name can be added to improve the chances of emails being correctly captured by Message Rules. This is currently only supported through Active Directory synchronization. Click here for a step by step guide on importing mailboxes from Microsoft Exchange Online

  3. Press Enter.

    Note

    If the email address is not on a domain that has previously been added it will result in an error message:

    75100_8.png
  4. Configure the following settings:

    • Exec Tracking - enable this checkbox to mark the email as belonging to a company executive for the purpose of the Executive Tracking Condition.

      Note

      You can activate executive tracking for specific Active Directory groups from Group Management.

    • Manage Variants - add or remove multiple variants of a user's name to improve tracking (name variations, maiden names, middle names, etc.).

      • To add a name variant click the Add button, type in the name variant and press enter.

        75100_9.png
      • To remove the variant click the Delete delete_emsec.png button

    • Groups - add or remove the user from specific Active Directory Groups

      • To add the user to a AD group click the Add Group Membership button, check the box for the group(s) you want to assign the user to and click Select.

        75100_10.png
      • To remove a user from a group click the Delete delete_emsec.png button next to the group.

    • Aliases - add multiple email addresses to a single user.

      Note

      Aliases allow email destined for variants of the primary mailbox address to be accepted through the DHA rule.

      • To add a new email address to a user click the Add button, type in the email address and press Enter.

        75100_11.png

        Note

        You will have to mark one of the email addresses as primary by checking the box in the Primary column.

      • Repeat the process for any additional aliases belonging to this primary email address.

      • To delete an alias click the Delete delete_emsec.png button next to the email address.