1. Knowledge Base
  2. PHISHING SIMULATION
  3. Whitelisting with email validation services

How to Whitelist by IP Address in Mimecast

Please note that configuration items' names and workflows might change on the app vendor's end, thus, please refer to the vendor's knowledge base for the latest documentation on whitelisting topics.


Why Whitelist in Mimecast?

Whitelisting ensures the Wizer phishing simulation (PS) functions without issue and prevents PS emails from being automatically moved to the spam folder or notifying users about potential phishing emails.

Anti-Spoofing Policy

  1. Log on to your Mimecast Administration Console.
  2. Click the Administration toolbar button.
  3. Select the Gateway | Policies menu item.
  4. Select Anti-Spoofing from the list of displayed policies.
  5. Select the New Policy button.
  6. Please add Policy Narrative 'Wizer Phishing Simulation Anti-Spoofing Policy' and select the relevant policy settings under the OptionsEmails FromEmails To, and Validity sections. For more information on these settings, see Mimecast's Configuring an Anti-Spoofing Policy article (opens in a new tab). 
  7. In the Source IP Ranges field, enter our IP ranges, please see this list (opens in a new tab).
  8. Please save the policy.

 

Permitted Senders Policy

  1. Log on to your Mimecast Administration Console.
  2. Click the Administration toolbar button.
  3. Select the Gateway | Policies menu item.
  4. Select Permitted Senders from the list of displayed policies.
  5. Select the New Policy button (please do not edit your default Permitted Sender policy; a new one must be created)
  6. Please add Policy Narrative 'Wizer Phishing Simulation Permitted Senders Policy' and select the relevant policy settings under the OptionsEmails FromEmails To, and Validity sections. For more information on these settings see Mimecast's Configuring a Permitted Senders Policy article (opens in a new tab). 
  7. In the Source IP Ranges field, enter our IP ranges, please see this list (opens in a new tab).
  8. Please save the policy. 

Attachment Protection Bypass Policy

  1. Log on to your Mimecast Administration Console
  2. Click the Administration toolbar button.
  3. Select the Gateway | Policies menu item.
  4. Select Attachment Protection Bypass from the list of displayed policies.
  5. Select the New Policy button.
  6. Please add Policy Narrative 'Wizer Phishing Simulation Attachment Protection Bypass Policy' and select the relevant policy settings under the OptionsEmails FromEmails To, and Validity sections. For more information on these settings, see Mimecast's Configuring Attachment Protection Bypass Policies article (opens in a new tab).
  7. In the Source IP Ranges field, enter our IP ranges, please see this list (opens in a new tab).

  8. Please save the policy. 


URL Protection Bypass Policy

Mimecast's URL Protection service scans and checks links in emails upon delivery. This can lead to false-positive results for your phishing security tests. Follow the steps below to create a URL Protection Bypass policy for accurate phishing simulation reports.

  1. Log on to your Mimecast Administration Console
  2. Click the Administration toolbar button.
  3. Select the Gateway | Policies menu item.
  4. Select URL Protection Bypass from the list of displayed policies.
  5. Select the New Policy button.
  6. Please add Policy Narrative 'Wizer Phishing Simulation URL Protection Bypass Policy' and select the relevant policy settings under the OptionsEmails FromEmails To, and Validity sections. For more information on these settings, see Mimecast's Configuring Attachment Protection Bypass Policies article (opens in a new tab).
  7. In the Source IP Ranges field, enter our IP ranges, please see this list (opens in a new tab).
  8. Please save the policy. 

Congratulations! You have just configured whitelisting!