Setting Up the Google Workspace Allow List

Configure the allow list settings for Google Workspace to allow Phishing Simulation Assessment to send phishing emails to the employees in your organization.

  1. Copy the Phishing Simulation Assessment sending IPs.
    1. On the Trend Vision One console, go to Assessment > Security Assessment.
    2. Under Phishing Simulation Assessment, click Start Assessment and go to Step 3 Delivery.
    3. Under Allow List Settings, click Settings to view and copy the Phishing Simulation Assessment sending IPs.
    Important:

    The sending IPs change over time. Check the list before launching the next simulation.

  2. Configure your Google Workspace allow list.
    Note:

    The following instructions are valid as of December 2022.

    For more information, see the Google Workspace Admin Help.

    1. Sign in to your Google admin console using an administrator account.
    2. Go to Apps > Google Workspace > Gmail > Spam, Phishing and Malware.
    3. In the Email whitelist section, paste the sending IPs separated by commas.
    4. (Optional) Disable Enhanced pre-delivery message scanning temporarily to ensure that the connection will not time out while reaching out to your server.
      Note:

      Trend Micro recommends you do not disable Enhanced pre-delivery message scanning until your campaign delivery rate hits 100%.

    5. Select Bypass spam filters for messages received from addresses or domains within these approved senders lists.
    6. Create a new list.
    7. Specify Trend Micro Vision One Sender as the list name.
    8. Specify the Trend Vision One sender domain name and disable Require sender authentication.
    9. Click Save.
  3. (Optional) Add the Phishing Simulation Assessment server IPs to your inbound gateway.

    When receiving phishing simulation emails, a warning banner may appear in the Gmail inbox of the phishing simulation recipient. Complete the following this step to prevent the banner from appearing.

    1. Under Spam, phishing, and malware section, add a new inbound gateway.
    2. Enter the Trend Vision One phishing simulation server IP addresses on the Gateway IPs.
    3. Select Message is considered spam if the following header regexp matches.
    4. Specify text for the spam header tag that is unlikely to be found in your phishing simulation email.
    5. Enable Disable Gmail Spam Evaluation for mail from this gateway using the header value option.
    6. Click Save.
    Note:

    Trend Micro recommends only enabling the above settings for the duration of your campaign.