This article explains how to set up allowlisting for the Security Awareness Service in Sophos Central Admin.
By allowlisting, you ensure that simulated phishing emails from the Security Awareness Service are not blocked by Sophos Central.
Note
Sophos Central Admin is a third-party product from Sophos. The user interface and available settings may change due to updates.
Therefore, also check the current Sophos documentation if the menu items described here differ in your version of Sophos Central.
Prerequisites
Make sure the following prerequisites are met:
- You have administrator access to Sophos Central Admin.
- You know the current IP address ranges, email addresses, or domains of the Security Awareness Service.
Add entries to the administrator list
- Log in to Sophos Central Admin.
- Click the Global Settings icon.
- Navigate to Protection and Cleanup > Allow and Block > Email.
- Open the Allow/Block Incoming tab.
- Click Administrator List.
- Add the required entries to the Allow list.
Depending on your needs, you can add the following entries:
- Email addresses
- Domains
- IP addresses
- IP address ranges
Sophos supports subnet masks from /16 to /32 for IP address ranges.
Check message authentication
When adding or editing allowed addresses or domains, Sophos Central can enforce message authentication for entries in the administrator list.
Sophos recommends enforcing message authentication for entries in the Allow list of the administrator list to prevent spoofing.
If simulated phishing emails still are not delivered as expected, also check this setting.
Verify allowlisting
Then send a test simulation or check the delivery of a simulated phishing email.
If the email is still blocked, delayed, or altered, also check the following:
- Other Sophos email security policies
- Message authentication for allowed entries
- Upstream gateways or firewalls
- Web filters or link scanners
- Antivirus or sandbox functions
Additional information
The current IP addresses, IP address ranges, and domains for allowlisting can be found in the documentation for the Security Awareness Service.
Since Sophos Central Admin is a third-party product, also check the current Sophos documentation.