This article explains how to create a catch-all email address. This means that if an email is sent to a non-existent email address, it will be delivered to the email address specified.
Log in to Kerio Connect Web Admin.
Under Accounts, click the Aliases section.
Click the Add button.
Enter an asterisk (
*) in the Alias field.
In the Description field, it is recommended to enter something to the effect of "Catch-All Email Address".
Set the "Deliver to" equal to Email address.
In the Email address field, either enter an email address or click the Select button to choose a local user.
Click OK to create the Catch-All email address.
Creating a catch-all account opens up the server to receive any email coming to the Kerio connect domain. The rule tells the server to accept any email that comes and drop it to the catch-all account, hence the response that the email has been delivered.
- The mail server does not check if the FROM address exists since the email can be coming from other servers. It is designed to check the TO address and deliver the email.
- In some cases, it might be considered a Low priority vulnerability. To resolve the vulnerability, it is recommended not creating catch-all rules, as that opens the system to receive all emails.
- Also, the system can validate the sending domain and avoid incoming emails sent from the same domain as the Kerio Connect mail server. To do this, you need to enable SPF to check incoming emails.