Page 1 of 1

OpenEFA Stable Release - Coming in Days!

Posted: Mon Nov 10, 2025 1:05 am
by adrastosefa
Hello OpenEFA Community,

We're excited to announce that OpenEFA is approaching a major stable release after weeks of
intensive testing, bug fixes, and security hardening. The system is now rock-solid and
ready for production deployments!

What is OpenEFA?

OpenEFA is a next-generation, AI-powered email security appliance built as the modern
successor to the discontinued EFA Project. It combines traditional email filtering with
cutting-edge machine learning to provide enterprise-grade email protection.

---
Key Features & Capabilities

Advanced Threat Detection:
- Business Email Compromise (BEC) Detection - AI-powered detection of CEO fraud and
impersonation attacks
- Brand Impersonation & Typosquatting - Identifies domain lookalike attacks targeting your
organization
- AI/NLP Spam Analysis - 12 integrated analysis modules using SpaCy NLP for superior
detection
- ClamAV Virus Scanning - Real-time malware detection with 2M+ signatures
- TOAD Detection - Identifies telephone-oriented attack documents (PDF scams)
- Behavioral Baseline Analysis - Detects account compromise via anomaly detection
- URL Reputation & Homograph Detection - Identifies malicious links and Unicode attacks

Intelligent Learning System:
- Conversation Learning - Reduces false positives by learning legitimate email patterns
- Thread Awareness - Automatically recognizes legitimate replies in ongoing conversations
- Adaptive Scoring - Dynamic spam scoring based on sender history and behavior

Multi-Tenant & MSP-Ready:
- Role-Based Access Control - Admin, Domain Admin, and Client user roles
- Multi-Domain Management - Single installation protects unlimited domains
- Domain-Scoped Permissions - Users only see emails for their authorized domains
- Self-Service Portal - Clients manage their own whitelist/blacklist rules

Modern Web Interface (SpacyWeb):
- Real-Time Dashboard - Email statistics, threat alerts, and system health
- Quarantine Management - Release, delete, or train on quarantined emails
- AI Assistant - Natural language interface for email management ("Show me spam from
today")
- Bulk Operations - Process multiple emails with one click
- Whitelist/Blacklist Management - Self-service sender management
- Comprehensive Reporting - Filter effectiveness, volume trends, and learning statistics

Notification & Alerting:
- SMS Notifications - Real-time alerts via ClickSend for phishing, BEC, and viruses
- System Health Monitoring - Automated alerts for service issues, disk space, mail queue
- Daily Summary Reports - Email processing statistics delivered daily
- Rate-Limited Alerts - Intelligent cooldown prevents notification spam

Enterprise Security:
- CSRF Protection - All endpoints protected against cross-site attacks
- Content Security Policy (CSP) - Prevents XSS and injection attacks
- Rate Limiting - API throttling prevents abuse
- Audit Logging - Complete change tracking for compliance
- Session Management - Configurable timeout (easily adjustable for testing/production)
- SQL Injection Protection - Parameterized queries throughout

---
Recent Stability Improvements

We've been laser-focused on stability and security:

✅ Comprehensive Security Audit (Nov 7, 2025) - Complete system hardening✅ Database
Performance Optimization - Proper indexing for fast queries✅ Permission System Refinement
- Rock-solid multi-tenant access control✅ Email Processing Timeout Fixes - Handles large
emails reliably✅ CSRF Protection - Implemented across all endpoints✅ Rate Limiting -
Protection against API abuse✅ UI/UX Polish - Improved visibility, toast notifications, and
responsiveness✅ Session Management - Configurable timeouts for different use cases

---
Perfect for EFA Users

If you're familiar with MailScanner EFA, you'll feel right at home. However, OpenEFA's
interface is completely redesigned with modern concepts:

- "User Messages" - Shows quarantined/suspicious emails requiring user action (similar to
EFA quarantine)
- "All Emails" - Complete email history with advanced filtering (available to Domain
Admins)
- Unified Interface - All email management from one clean, modern dashboard
- Better Performance - MySQL backend with optimized indexes for speed

---
Quick Installation

One-line install:
curl -sSL http://install.openefa.com/install.sh | sudo bash

System Requirements:
- Ubuntu 24.04 LTS or 22.04 LTS
- 2 GB RAM minimum (4 GB recommended)
- 20 GB disk space
- Static IP with ports 25, 443, 5500 accessible

---
What's Next?

The stable release will include:
- Complete documentation
- Migration guide from EFA
- Community support forums
- Regular security updates

---
Try It Today!

When released.... the build will be production-ready and stable. Install it, test it, and let us know what
you think! We've put thousands of hours into making this the best open-source email
security solution available.

Questions? Issues? Feedback?Post them here or open an issue on GitHub. We're here to help!

Thank you to everyone who has tested, provided feedback, and contributed to making OpenEFA
a reality.

---
OpenEFA Team

Re: OpenEFA Stable Release - Coming in Days!

Posted: Tue Nov 25, 2025 10:50 am
by mihab
Any news when stable version will be released ?

Re: OpenEFA Stable Release - Coming in Days!

Posted: Wed Nov 26, 2025 9:02 pm
by MauriceW67
Wondering the same thing... "Coming in days" was over two weeks ago...

Re: OpenEFA Stable Release - Coming in Days!

Posted: Thu Dec 04, 2025 5:02 am
by philippe07
Hello,

you achieve hard work and you have also some work to achieve :) do you have an update on the stable release process ?
from my side, i installed the available version, it's working. However i have somes issues / questions (how to deploy SSL :) )

Thank you !

Philippe

Re: OpenEFA Stable Release - Coming in Days!

Posted: Sat Dec 06, 2025 1:56 am
by adrastosefa
I am purposely not traveling this weekend to finalize a stable release. We are using the release candidate and it was the middle of last week over Thanks Giving and then back to work on Monday, that I realized how close we were. The realization came from the 20 plus domains that we currently process for, were not screaming and our support team actually had some normal days. We are currently processing on this pre-release version about 2000 message per day and the number of clients is growing and 4 more have signed up, and are in the process of onboarding.

So things are definitely better under the new release. Hoping for tomorrow night release Pacific time, but certainly no later than Sunday.
s
sb

Re: OpenEFA Stable Release - Coming in Days!

Posted: Mon Dec 08, 2025 5:45 pm
by adrastosefa
New release posted last night - Version 1.6. Please see the announcement

Re: OpenEFA Stable Release - Coming in Days!

Posted: Tue Dec 09, 2025 9:56 pm
by philippe07
Thank you ! i will test this :)

Regards

Philippe