Re: How to push rule for Firewall itself That depends on your configuration. The SCS can run on the same host where the enforcement module is installed. In this case it would be a firewall node. Otherwise it would just be a management host without any firewall functions. To check this out, run this command on your SCS: fw ver; fw stat If it says that it's not a firewall, then it's just a management host. Next if your SCS is in the same network where your internal mail server resides you don't require any additional rules. So you are almost done. In the case that your SCS is localed in a different network you'll need to tell your firewall node to pass the mail traffic from it to your mail server. Therefore an additional rule is required that needs to be installed on the firewall node (enforcement module). Best regards, Danny Trommer CCSA/CCSE/CCSE+ |