Internal scanning

This section includes:

What is internal scanning

FortiMail Workspace Security includes 3 types of scanning:

  • Incoming

  • Internal

  • Outgoing

Internal scanning is the scanning of email messages within the organization environment, where the sender and the recipient are in the same organization environment.

About internal scanning

  • Don't enable the internal scanning functionality if scanning for inbound email is not yet configured.

  • By default, internal email is not scanned. To enable internal scanning, see Enabling internal scanning below.

  • Internal scanning requires its own contract. There may be additional licensing requirements for enabling internal scanning. For details about contracts, see Contracts and Channels.

  • You can add internal scanning only if your organization is already configured to scan incoming email - using any of the Microsoft 365 or Google Workspace integration methods.

  • The internal integration functionality is performed using either the Microsoft 365 API or the Google Workspace API connection methods. The Inline connection methods are not available for internal scanning.

Availability of internal scanning

  • Internal scanning can be added to the following incoming integrations:

    • Microsoft 365 Inline

    • Microsoft 365 API

    • Google Workspace Inline

    • Google Workspace API

  • Internal scanning is NOT available for the following integrations:

    • Microsoft Exchange [on-prem]

    • "Other"

Enabling internal scanning

Internal scanning requires its own contract. There may be additional licensing requirements for enabling internal scanning. For details about contracts, see Contracts and Channels.

By default, internal email is not scanned.

To enable scanning of internal email:

For organizations that are registered with FortiCloud

  1. Select Settings > Contracts and Channels.

  2. Under Enabled Channels, locate Email Service, and then click Email service configuration [] on the right. The "Email Service Configuration" dialog box opens.

  3. In the Email Service Configuration dialog box, select:

    • Connection Method > "Microsoft API"

      - or -

    • Connection Method > "Google API"

    Note: Select the relevant API option even if the Inline method is already configured for incoming scanning.

  4. Select the Connection Scope > Internal check box.

    Important: If one-or-both of the Inbound or Outbound check boxes are already selected, this indicates that scanning of incoming and/or outgoing emails is already configured. Do NOT clear either of these check boxes. If you clear either of these check boxes, then the existing API inbound and/or outbound integrations may be removed.

For organizations that are NOT registered with FortiCloud

Contact your Account Manager for FortiMail Workspace Security.

Email size limitations that apply to internal scanning

The following email size limitations apply to internal scanning:

Integration

Maximum size of email - including attachments

  • Microsoft 365 - API

  • Google Workspace - API

500 MB

  • Microsoft 365 - Inline

  • Google Workspace - Inline

40 MB