How can I block emails from specific domains for all recipients?

0
6
Asked By TechSavvyNinja92 On

I'm looking for a way to block any emails from being delivered to anyone in my organization if any of the recipients have addresses from a specific lookalike domain, like 'ammazon.com' instead of 'amazon.com'. We've encountered situations where a vendor got hacked and they sent emails that looked legit because they included multiple recipients with this fake domain. I want to prevent these emails from being delivered altogether, even to legitimate recipients, and I'd like to receive alert notifications as the admin so I can investigate potential security issues. I've tried using a data loss prevention (DLP) policy, mail flow rule, and the tenant allow/block list, but while it seems to block the fake domain, the emails still get delivered to legitimate addresses. I'm the solo admin of a small to medium business using Microsoft Business Premium and I'm open to other solutions if there's a better way to handle this.

3 Answers

Answered By SamTheResolver On

If I’m understanding correctly, setting up two transport rules should work—one for each direction (inbound and outbound). Just make sure they’re configured properly to block messages sent to your employees as well.

Answered By EmailGuru47 On

You might be able to achieve your goal using transport rules. Try setting up two rules: one for inbound emails and another for outbound emails where the sender or recipient matches that fake domain, and ensure that it sends reports to the admin.

Answered By SafetyFirstGuy43 On

Unfortunately, you can't control what others do with lookalike domains. All you can really do is focus on stopping those inbound emails to your organization. There are services that can help you monitor and report such domain registrations, but educating your staff and partners is critical too.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.