This document describes the steps to create a profile and routing rules in Proofpoint for eShare Secure Collaboration Gateway. At a high level, the steps involved are:
Outbound Rules: Proofpoint to eShare
Note: This is only a sample Email Firewall Rule. The Rules to be created in your tenant may vary depending on your requirements and use cases you intend to support with eShare.
Login to the Proofpoint Admin Center (https://protect.proofpoint.com) and navigate to ‘Email Protection‘ > ‘Email Firewall‘ > ‘Rules‘, then select ‘Add Rule‘.

Input a unique, identifiable name in the ‘ID‘ field and add a ‘Description‘. Click on ‘Add Condition‘.

In the ‘Add Condition‘ dialogue box, input the following:
Condition: Message Headers
Header: User Defined
Header Value: esharesmg
Operator: Equals
Value: [secure-email]
When done select ‘Add Condition‘ to save your settings.

Change the delivery route to ‘Re-route‘. Click on ‘Create SMTP Profile…‘ button to create a new Profile.

In the ‘Add Profile‘ window, input the following:
ID: Unique name for SMTP Profile
Description: as desired
Profile Type: Buffer Queue
Host: IP/FQDN provided to you by eShare
Delivery Type: Load Balanced
Port: 25
Timeout: leave blank
From Address: SCG_no-reply@yourdomain.com
Display Name: leave blank
HELO Domain: Your domain
SMTP Address: Use Original Recipient Address
Leave the other fields blank and save the profile.

Confirm the newly created SMTP Profile is selected. Enable ‘Stop other rules…‘ and select ‘Stop further rule evaluation and execution‘ under ‘Disposition Action‘. Save your Rule.

Inbound Rules: eShare to Proofpoint
NOTE:
Inbound Rules are recommended when you desire to capture email replies to eShare Secure Mails from external recipients that are sent directly from their native mail client and messages included in such replies are to be added to Secure Conversations in Trusted Shares. This rule is not required for replies posted by internal or external recipients in your eShare Web Portal.
Navigate to ‘Email Protection‘ > ‘Email Firewall‘ > ‘Rules‘, then select ‘Add Rule‘.
Input a unique, identifiable name in the ‘ID‘ field and add a ‘Description‘. Click on ‘Add Condition‘.

In the ‘Add Condition‘ dialogue box, Input the following:
Condition: Message Headers
Header: User Defined
Header Value: references
Operator: Equals
Value: eflsmg
When done select ‘Add Condition‘ to save your settings

Enable checkbox for ‘Change message headers…‘ and click ‘Add…‘ to add a new message header. Input the following values and save:
Header: User Defined
Header Value: x-smg-external-reply
Operator: Equals
Value: external_reply
Enable checkbox for ‘Send a copy to destination…‘ Select the ‘Copy filtered message‘ option. Select ‘New recipient(s)‘ and input cloneemail@somedomain.com. Save the rule.

Next, create a new Email Firewall Rule to route the email clone from the above steps to eShare Secure Collaboration Gateway. Input a Unique name in the ‘ID‘ Field and a ‘Description‘. Click on ‘Add Condition‘. In the ‘Add Condition‘ dialogue box input the following:
Condition: Envelope Recipient Email Address
Operator: Equals
Value: cloneemail@somedomain.com
When done select ‘Add Condition‘ to save your settings. Select ‘eShare‘ for the ‘SMTP Profile‘. Enable ‘Stop other rules…‘ and select ‘Stop further rule evaluation and execution‘ under ‘Disposition Action‘. Save your Rule.
