Skip to main content
Skip table of contents

IP Permission List, Transport Rules (Microsoft 365)

In this article, we explain how to whitelist Exchange Online (Microsoft 365).  

The following steps are required:  

  1. First, you set up an IP permission list that contains our IP address.  

  2. Then, you set up a message flow rule so that our incoming e-mail can bypass both the Clutter folder and Microsoft's EOP spam filter.  

  3. In addition, a rule must be created in Microsoft 365 regarding the Junk folder.  

Once you have completed this process, it may take some time for the settings to be fully processed. We recommend that you wait one to two hours before you test whether the whitelisting was successful.  

For the IP addresses used, please refer to the SoSafe Manager Portal under Simulation > Whitelisting. Self-service customers can only view this information through their individual SoSafe Manager access. All other customers can also access this information via the following direct link:  

SoSafe Manager (Whitelisting)  

When using Microsoft Defender for Microsoft 365, please also see this article: 

Whitelisting domains with safe links (Microsoft Defender)

Chapter 1: Setting Up the IP Permission List 

Step 1 

Log in to your mail server portal. 

Step 2 

Under “Policies & rules” (1) select “Threat policies” (2). 

2 - policies and rules.png
2 - threat policies.png

Step 3 

Click on “Anti-spam”. 

3 - anti spam.png

Step 4 

Click on  Connection filter policy. A pop-up window will open. 

4 - connection filter policy.png
4 - connection filter policy 2.png

Step 5 

Click “Edit connection filter policy”. 

5 - edit connection filter policy.png

Step 6 

Insert our IP address here (see platform or direct link) (1) and click “Save” (2). 

6 - always allow messages from following ip.png

Step 7 

Click on “Save”. This completes the Setting Up the IP Permission List section. 

Chapter 2: Bypass Spam and Clutter filters 

Step 1 

Log in to your mail server portal and click on the main menu on the left side. 

Choose “Exchange message trace” in the left menu. The Exchange Admin Center opens in a new window. 

2_1 - Exchange message trace.png

Step 2 

Click on “Rules” under the drop-down menu “Mail flow”. 

2_2 - Rules.png

  

Step 3 

Click on the plus icon and select “Add a rule…”. A pop-up window opens. 

2_3 - Add a rule.png

Step 4 

Give the rule a name, e.g., “Avoid spam and clutter filters by IP address”. 

2_4 - Name rule.png

Step 5 

In the drop-down menu, under the “Apply this rule if...” item, select the “The sender...” item. - then activate the rule “IP address is in any of these ranges or exactly matches”. 

2_5 - Apply rule.png

Step 6 

Enter our IP address (see platform or direct link) in the window that opens and click on the “Add” button to add them. Add more addresses if necessary and then click on “Save”.

2_6 - Specify IP address ranges.png

Step 7 

In the drop-down menu under “Do the following...” click “Modify the message properties...” and then click “set a message header”. 

2_7 - Modify message properties.png

Step 8 

On the right this text should appear: Set the message header *Enter text… to the value *Enter text....  

Enter “X-MS-Exchange-Organization-BypassClutter” for the first placeholder and “true” for the second placeholder.  

2_8 - Set a message header.png

Step 9 

Click on the blue plus symbol (+) to add another action and select “Modify the message properties…” from the drop-down menu, then select “set the spam confidence level (SCL)”. 

2_9 - Modify message properties.png

Step 10 

In the pop-up window, select the option “Bypass spam filtering” and press “Save”.  

2_10 - Specify SCL.png

Step 11 

Now click on “Next” to get to the next section “Set rule settings”. 

Scroll down to the “Match sender address in message” field and select “Envelope” instead of “Header”. 

2_11 - Set rule settings.png

Click on “Next” again.  

The finished rule should look like this: 

2_11 - Finished rule.png

Press “Finish”. Then set the rule from “Disabled” to “Enabled”. 

This completes the chapter Bypass Spam and Clutter filters. 

Chapter 3: Bypass Junk filter  

Step 1 

Follow the steps 1 – 3 in chapter 2 and open “Rules” under the drop-down menu “Mail flow”. 

3_1 - Rules.png

Step 2 

Click on the plus icon and select “Add a rule…”. A pop-up window opens.

3_2 - Add a rule.png

Step 3 

Give the rule a name, e.g., “Junkfilter”. 

3_3 - Name rule.png

Step 4 

In the drop-down menu, under the “Apply this rule if...” item, select the “The sender...” item. - then activate the rule “IP address is in any of these ranges or exactly matches”. 

3_4 - Apply this rule if.png

Step 5 

Enter our IP address (see platform or direct link) in the window that opens and click on the “Add” button to add them. Add more addresses if necessary and then click on “Save”. 

3_5 - Specify IP address ranges.png

Step 6 

In the drop-down menu under “Do the following...” click “Modify the message properties...” and then click “set a message header”. 

3_6 - Modify the message properties.png

Step 7

On the right this text should appear: Set the message header *Enter text… to the value *Enter text.... 

Enter “X-Forefront-Antispam-Report” for the first placeholder and “SFV:SKI;” for the second placeholder.  

3_7 - Set the message header.png

Step 8 

Now click on “Next” to get to the next section “Set rule settings”. 

Click on “Next” again. 

 

The finished rule should look like this: 

3_8 - Finished rule.png

Now press “Finish”. 

Then set the rule from “Disabled” to “Enabled”. 

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.