I can't help with your LDAP query, but I'm also a Symantec Mail Security for SMTP user. I decided not to use their LDAP sync feature after support told me it sends out an NDR for every e-mail sent to an invalid recipient. I didn't want to send that much backscatter out onto the Internet. Just something to think about. Richard Osborne Information Systems Jackson-Madison County General Hospital
NOTICE: (1) The foregoing is not intended to be a legally binding or legally effective electronic signature. (2) This message may contain legally privileged or confidential information. If you are not the intended recipient of this message, please so notify me, disregard the foregoing message, and delete the message immediately. I apologize for any inconvenience this may have caused. ________________________________ From: Jeff Brown [mailto:2jbr...@gmail.com] Sent: Friday, March 13, 2009 10:38 AM To: MS-Exchange Admin Issues Subject: symantec smtp mail filter help I'm hoping someone out there has done this already. I am currently using symantec's mail security for smtp. I have been using the ldap sync to let it dump mail to invalid recipients up front. Using version 5.0.1 on W2k3 server. The autofill settings for ldap synchronization DO NOT find secondary smtp addresses. I have an account created for marketing purposes that has SEVERAL secondary addresses setup and have to turn ldap lookup off in order for mail to those addresses to pass through. Symantec tech support tells me they don't support the cusomization of the ldap querry that would enable to filter to inlcude secondary smtp adresses, but someone familiar with ldap could modify to querry to do that. anyone able to help with that? here is what the current querry looks like: (&(|(objectCategory=group)(objectCategory=person))(&(|(mail=*)(proxyAddr esses=*))(sAMAccountName=*))) ~ Ninja Email Security with Cloudmark Spam Engine Gets Image Spam ~ ~ http://www.sunbeltsoftware.com/Ninja ~