petra last edited by
Is it possible to “catch” outgoing SMTP-traffic? I want to catch all SMTP-traffic and forward it to our antivirus-server. We want it to be transparent since we have a lot of users we can’t make them change their SMTP-settings. What is the best way to do this?
In checkpoint you could create a SMTP-resource.
You can try having your AV server in the untrust zone (another physical interface) and use destination nat in your rule. With such config, take care to relaying