Create SDR rule in Exchange on premise

Introduction

This document explains how to configure mail flow rules for Secure Direct Replies in Exchange On Premise.
You will set up two rules for Secure Direct Replies:
1. An exemption rule to exclude messages that should not be processed by the Secure Direct Replies rule.
2. The Secure Direct Replies rule to handle Secure Direct Reply messages.

The following chapters will guide you through setting up these two rules.

Exemption rule

In this chapter we explain how to setup the Exemption rule for Secure direct Replies.

Getting started

  1. Go to the Exchange Administrative Center (EAC).
  2. Log into EAC as an administrator.
  3. Click on mail flow in the menu on the left.
  4. Click on rules.
  5. Click on the add icon.
  6. Click on Create a new rule….
  7. Enter Zivver: Detect processed messages as the name.
  8. On the bottom of the page, click on More options….

Set mail flow rule conditions

  1. Under * Apply this rule if… select The message header… and then matches these text patterns.
  2. Click the *Enter text… field.
  3. Set the message header to X-Zivver-Transport.
  4. Click OK.
  5. Click the *Enter text patterns… field.
  6. Enter the value ..*. (that is 2 dots, 1 asterisk/wildcard, 1 dot).
  7. Click the add icon.
  8. Click OK.

Set mail flow rule actions

  1. Under * Do the following… select Modify the message properties… and then set a message header.
  2. Click the first * Enter text… field.
  3. Set the message header to skip-zivver-relay.
  4. Click OK.
  5. Click the second * Enter text… field.
  6. Set the value to true.
  7. Click OK.

Set rule settings

  1. Leave the Audit this rule with severity level on the default setting of Not specified.
  2. Leave the Choose a mode for this rule on the default setting of Enforce.
  3. Optional: Enable Activate this rule on the following date and select a date and time, if you want this mail flow rule be automatically activated from a specific date and time.
  4. Leave Deactivate this rule on the following date disabled.
  5. Leave the option Stop processing more rules disabled.
  6. Leave the option Defer the message if rule processing doesn’t complete disabled.
  7. Leave Match sender address in message to the default setting of Header.
  8. Enter the comment Exclude messages that have been processed and sent by the Zivver Platform to avoid mail looping..
  9. When you are satisfied that the mail flow rule is configured correctly, click Save.

Set the priority

  1. Ensure the mail flow rule has a higher priority than the Secure Direct Replies rule we will create in the next chapter.

Repeat steps for X-Zivver-DLP header

If your organization also uses a Zivver client integration (such as Zivver for Outlook, or Zivver for Gmail), this additional exception is required for emails that have been scanned by a Zivver client integration and for which the user decided not to activate Zivver. These can be excluded from being routed through the Zivver Secure Direct Replies rule, because this rule may end up overruling the user’s decision, causing unwanted and unexpected behavior.

  1. Repeat all steps in above, substituting the following:
    • Enter Zivver: Detect messages scanned by client integration as the name of the rule.
    • Replace X-Zivver-Transport header with the X-Zivver-DLP header wherever it occurs.
    • Enter Exclude messages that have already been scanned by a Zivver client integration to avoid DLP Gateway overruling user decisions or making a suggestion that was already provided while the message was composed. as the comment.

Secure Direct Replies rule

Now that the exemption rule is created, it is time to create the rule that will process the Secure Direct Reply messages. In this chapter we explain how to setup the Secure Direct Replies rule.

Getting started

  1. Go to the Exchange Administrative Center (EAC).
  2. Log into EAC as an administrator.
  3. Click mail flow.
  4. Click rules.
  5. Click the add icon.
  6. Click Create a new rule….
  7. Click More options… at the bottom of the window.
  8. Enter Zivver: Secure Direct Replies 2.0 as the Name.

Set mail flow rule conditions

  1. Open the Select one dropdown menu under Apply this rule if….
  2. Select A message header… > matches these text patterns.
  3. Click Enter text….
  4. Enter References.
  5. Click OK.
  6. Click Enter text patterns….
  7. Enter zivver-sdr-<your_Zivver_UUID>.

    Don’t know your Zivver UUID?
    You can contact your Customer Success Manager or support@zivver.com to request your Zivver UUID.
  8. Click the add icon.

  9. Click OK.

Set mail flow rule actions

  1. Open the Select one dropdown menu under Do the following.
  2. Select Redirect the message to… > these recipients.
Don’t have a connector for Zivver yet?
Please read the following manuals:
1. Create an accepted domain.
2. Create a contact.
3. Create a send connector.
  1. Select the contact with the fictive domain.
  2. Click add ->.
  3. Click OK.
  4. Click add action.
  5. Open the Select one dropdown menu under and.
  6. Select Modify the message properties... > set a message header.
  7. Click the first Enter text....
  8. Enter zivver-relay.
  9. Click OK.
  10. Click the second Enter text....
  11. Enter
    • sdr → when using the Zivver Encryption Gateway.
    • smart-sdr → when using the Zivver DLP Gateway.
  12. Click OK.

Set mail flow rule exceptions

  1. Click the add exception button under Except if...
  2. Open the Select one dropdown menu under Except if....
  3. Select A message header... > matches these text patterns.
  4. Click Enter text....
  5. Enter X-Zivver-Transport.
  6. Click OK.
  7. Click Enter text patterns....
  8. Enter ..*. (that is 2 dots, 1 asterisk/wildcard, 1 dot).
  9. Click the add icon.
  10. Click OK.

Set rule settings

  1. Leave the Audit this rule wiht severity level on Not specified.
  2. Leave the Choose a mode for this rule on Enforce.
  3. Leave Activate this rule on the following date unchecked.
  4. Leave Deactivate this rule on the following date unchecked.
  5. Check Stop processing more rules.
  6. Leave Defer the message if rule processing doesn't complete unchecked.
  7. Leave Match sender address in message on Header.
  8. Optionally enter a comment in the Comments section. E.g. the purpose of this rule (allow Zivver Secure Direct Replies on your mailserver).
  9. Click Save.

Set the priority

  1. Scroll down to your new rule.
  2. Double-click on the rule.
  3. Change the Priority so that this rule is placed immediately after the Exemption rule(s) created in the previous chapter.
  4. Click Save.