Transport Rule with smtp relay Email (Without using authentication)

Muahammad Ashraf Aerummel
Muahammad Ashraf Aerummel used Ask the Experts™
on
Hi
I have created a Transport rule for the  emails  from outside the organisation will tag a word external in Subject.And except if subject includes  words external
So outside  email tag with `external` If they are replying the word external will not repeat external in subject.

Inside the organisation emails like non authenticate  SMTP relay has configured for alerts. If mail is mail is receiving from such  alerts tag word is coming on subject .
Why it's happening like that. To avoid this I have to except if own domain(test.com). Why it's like that even its from inside the organisation.

Please find the attched rule screenshot for referensce.
Before-Transport-Rule.jpg
After-apply-added-domain-Transport-R.jpg
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
hi all

Please help me for my query
MaheshArchitect
Distinguished Expert 2018

Commented:
Open such email header and locate "X-MS-Exchange-Organization-AuthAs: "

Check its value, if its showing anonymous, it means email treat as from external source, it should show as "internal"

In that case you need to check your receive connector which is configured to accept emails from application and ensure it is configured as externally secured
Then check again
thank you for your suggestions
if you can small brief about externaly secured and why it is showing externaly
Architect
Distinguished Expert 2018
Commented:
When you send emails from applications with simply entering from ID without providing any authentication, exchange receive it and apply security checks. As a fact externally secured connector treats message as received from forgein source and hence your mail is considered as external.
Once you applied externally secured checkbox, exchange trade offs majority of security checks and your message should be considered as internal
OR
Use authenticated relay. At sending application level, use authentication for sender if available, most of the times custom applications do not have facility to provide user authentication
Check below thread for externally secured connector:
https://docs.microsoft.com/en-us/exchange/mail-flow/connectors/allow-anonymous-relay?view=exchserver-2019

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial