Hermes SEG Administrator Guide
General Information
Introduction
Hermes Secure Email Gateway is a Free Open Source (Hermes SEG Community Only) Email Gateway that ...
Getting Started
Access Hermes SEG Administrator Console Using a browser, access the Hermes SEG Administrat...
Upgrade and Migrate Hermes SEG 18.04 to 20.04
Introduction Hermes SEG version 18.04 is based on Ubuntu Server 18.04 LTS (Bionic Beaver). On Ma...
Requirements and Recommendations
Hermes SEG should be behind a network perimeter firewall for best security. Network Firewall r...
OVA/Hyper-V Appliance URL and Default Credentials
The following URL and default credentials are provided for reference, backup, restore and migrati...
Hermes SEG E-mail Flow
Incoming Normal Mail Flow Postfix TCP/25 --> SPF --> DKIM(Milter) TCP/8891 --> (Reinject)Postfix...
Encryption
Hermes SEG leverages the capabilities of Ciphermail in order to perform encryption/decryption of ...
System
AD Integration
NOTE: This feature is only available with Hermes SEG Pro License. Hermes SEG requires a listing ...
Admin Authentication
Hermes SEG utilizes Authelia Authentication Server for controlling access to the the Hermes SEG A...
Admin Console Firewall
This feature is only available with Hermes SEG Pro License. The Admin Console Firewall allows ...
Network Settings
In this section you can setup the Hermes SEG network settings such as Hostname, IP address, Subne...
Console Settings
The Hermes SEG Console Settings sets the method you wish to access Hermes SEG machine which inclu...
Mail Queue
In this page, you can adjust the the Bounce and Max Queue Lifetime settings, Flush Mail Queue, Vi...
System Logs
System Logs allows you to set the Log Retention period, fetch system logs by date range/time and ...
System Backup and Restore
System Backup and System Restore are configured and ran in the CLI as root. There is a Backup scr...
System Certificates
Hermes SEG allows you to manage SSL certificates in order to be used for console access over HTTP...
System Settings
The Postmaster E-mail Address MUST BE on a domain that the system currently delivers email for ...
System Status
System Status displays the following information: Version Build Edition Uptime System IP ...
System Update
Hermes SEG requires outbound TCP/80 and TCP/443 access to our update servers in order to check ...
System Users
The System Users screen allows you to create, add and delete System Users (Figure 1). Figure 1 ...
Email Archive
In this section will be able to configure a scheduled archive jobs for your Hermes SEG. An Email...
System Reboot & Shutdown
Reboot System Click on the Reboot System button and wait for the system to finish the reboot p...
Gateway
SMTP TLS Settings
It's important to set SMTP TLS in order to transmit e-mail messages between your Hermes SEG machi...
Relay Host
Normally, Hermes SEG delivers email directly to remote SMTP hosts over the Internet. Sometimes, t...
Relay Domains
In order for Hermes SEG to deliver email, you must first set the domain(s) that Hermes SEG will p...
Relay IPs & Networks
In this section, you can add which individual IPs or networks will be allowed to send (relay) ema...
Internal Recipients
Hermes SEG requires a listing of Internal Recipients in order to process incoming email and deliv...
Virtual Recipients
If you have an Internal Recipient joe@domain.tld but you also want the email address joe.smoe@dom...
Content Checks
Perimeter Checks
The Hermes SEG Perimeter Checks page allows you to set settings for any incoming email before the...
RBL Configuration
A RBL (Real Time Block List) is a mechanism for determining the reputation of a sender IP address...
Network Block/Allow
The IP & Network Override section will allow you to Permit or Deny specific IPs or Networks. The ...
Sender to Recipient Block/Allow List
The Sender Checks Bypass permits you to either Block or Allow sender email addresses or sender do...
Global Sender Block/Allow List
This page is under construction.
SPF Settings
Sender Policy Framework (SPF) is a simple email-validation system designed to detect email spoofi...
DKIM Settings
DomainKeys Identified Mail (DKIM) is a protocol that allows verifiable email transmission though ...
Antivirus Settings
The settings below control the behavior of the ClamAV antivirus engine. ClamAV is the default eng...
Antivirus Signature Feeds
The Hermes SEG default antivirus engine (ClamAV) is not very effective at detecting malware w...
Antivirus Signature Bypass
In this page, you can manage problematic Antivirus Signatures that cause too many false positives...
Antispam Settings
NOTE: This section requires any saved changes to be applied by clicking the Apply Settings button...
Custom Antispam Filter Tests
This page allows you to customize Spam filter tests scores to fit your needs. If you have problem...
Initialize Pyzor
Pyzor is a collaborative, networked system to detect and block spam using digests of messages.Pyz...
Initialize Vipul's Razor
Vipul's Razor is a distributed, collaborative, spam detection and filtering network. Vipul's Razo...
Clear Bayes Database
Occasionally, the Bayes Database can become corrupted or poisoned due to bad database training or...
Custom File Extensions
File Extensions are helpful in identifying files contained in incoming email attachments. File ex...
Custom File Expressions
File Expressions are helpful in identifying files contained in incoming email attachments. File e...
Message Rules
NOTE: This feature is only available with Hermes SEG Pro License. NOTE: This section requires an...
File Rules
File Rules allow you to create rules containing either block or allow actions for file extensions...
SVF Policies
SVF (Spam/Virus/File) Policies contain settings that determine the behavior of Hermes SEG in ...
Message History
Hermes SEG keeps a log and a copy of each email message it sends and receives for archiving p...
Encryption
Internal Certificate Authority
An Internal Certificate Authority can be used to create certificates for internal and external re...
PGP Key Servers
PGP Key Servers section allows you to add/delete public PGP Key Servers to Hermes SEG in order to...
Encryption Settings
The Trigger encryption by e-mail subject allows Internal Recipients to encrypt email to any Ext...
Internal Recipients Encryption
If Internal Recipients have not been added in your system under Gateway --> Internal Recipien...
External Recipients Encryption
Hermes SEG will send encrypted email to any external external recipient by by triggering the encr...