Block Users Sending to Specific Domains with Exchange Server 2007

In some scenarios an organization will want to prevent email users from sending messages to certain external domain names.  This can be achieved with Exchange Server 2007 using a Transport Rule.

Open the Exchange Management Console and navigate to Organization Config/Hub Transport.

Start a New Transport Rule.

Give the rule an appropriate name and description.

Choose conditions of “From users inside the organization” and “When a message header contains specific words“.  Click on “message header” and change it to “To” (without the quotes), and then click on “specific words” and add the domain name, for example “@fabrikam” (again without quotes).

Click Next and choose actions of “Send bounce message to sender…” and “Silently drop the message“.

You can modify the bounce message that is sent to the sender so that they or the IT admins can easily tell why the email was rejected.

Complete the Transport Rule wizard and test the new rule by trying to send an email to that domain name.

You should now receive a bounce message from the Exchange server with the text that you configured.

About Paul Cunningham

Paul is a Microsoft Exchange Server MVP and publisher of Exchange Server Pro. He also holds several Microsoft certifications including for Exchange Server 2007, 2010 and 2013. Connect with Paul on Twitter and Google+.

Comments

  1. Martyn Burford says:

    Thank you for these notes, very useful and very clear.
    We have found that this will only block the To field and not Cc or Bcc. We have setup a new rule that blocks Cc but we are having trouble with Bcc.

  2. Have you found blocking BCC option?,
    I have same issue that i can’t block bcc option, i would like also to know if i can import a big list of domains that i want to block through powershell somehow

  3. Still the user can send email to this selected email address..

    The only thing he needs to do is put any allowed address in TO and put restricted email address in CC.. Bingo..

    I have been looking for real solution that can block all emails to speceific domain either in TO or CC.. with Exchange 2010 this is easy to do..

Leave a Comment

*

We are an Authorized DigiCert™ SSL Partner.
Loading...

Still running Exchange 2003? Time to get moving and start your upgrade. Find out how - Click Here