Step 3: Import Mailboxes (Google Workspace)

Modified on Tue, Aug 25 at 11:07 AM

All of your active mailboxes, including users, shared mailboxes and distribution groups, should be added to Proofpoint ahead of the setup. This is done by importing a list of your mailboxes from a CSV file.

Every address has to be here. Once the MX records point at Proofpoint, mail addressed to something Proofpoint does not recognize is rejected. That means user mailboxes, shared mailboxes, groups and distribution lists, and every alias. Anything missed at this step becomes a bounce on the day of cutover.

Accepted format

Proofpoint will only accept a CSV file with the following columns. No header row is required.

  1. First name
  2. Last name
  3. Primary email address
  4. Mobile phone number
  5. Aliases, optional, one per column
  • Each field is separated by a comma and each mailbox sits on its own row.
  • Everything after the mobile number column is treated as an alias.
  • The mobile number column has to be present, but the value can be empty if two factor authentication for users is turned off.
  • A valid mobile number must include an international prefix and no other non-numeric characters.

One user with one alias:

John,Smith,john.smith@domain.com,+447123456789,jsmith@domain.com

One user with no mobile number and two aliases. Note the empty field between the two commas:

Jane,Doe,jane.doe@domain.com,,jd@domain.com,jane@domain.com

Export the user list from Google

  1. Sign in to the Google Admin console at admin.google.com using an administrator account.
  2. Go to Menu, then Directory → Users.
  3. At the top of the Users list, click Download users.
  4. Under Select columns, choose All user info columns and currently selected columns.
  5. Under Select format, choose Comma-separated values (.csv), then click Download.
  6. The export is queued as a task. When it finishes, open the link in the task list to retrieve the file.
  7. Delete every column except the four Proofpoint expects, and remove the header row.
Check the aliases before you trust the export. Open the downloaded file and look for an alias column. If aliases are not in it, take them from each user's account page in the Admin console under User information, and add them to the end of the matching row. An alias that is not in Proofpoint stops receiving mail at cutover, and because the primary address still works the customer usually finds out days later.

Export groups and shared mailboxes

Directory → Users does not include groups. This is a separate export and it is the step most often skipped.

  1. Go to Menu, then Directory → Groups.
  2. Export the group list as a CSV.
  3. Add each group address to the mailbox CSV as its own row. The first and last name fields can be the group name and a placeholder.

Shared mailboxes on Google Workspace are normally either a group or a full user account. If it is a user account it will already be in the user export. If it is a group it will not.

Import mailboxes into Proofpoint

  1. In Proofpoint, navigate to User Management → Import & Sync → CSV Import.
  2. Choose whether to import these mailboxes as End Users or Silent Users. End Users receive a welcome email and access to the Proofpoint portal, Silent Users do not.
  3. Click Choose File to retrieve your CSV of mailboxes, then click Upload.
  4. Read the import result. Proofpoint reports the rows it rejected, most often for a malformed mobile number or a duplicate address. A partial import that nobody checks is the same as a missing mailbox.
Silent Users is the safer default during deployment. It avoids sending unexpected mail to the customer's staff before the service is live and before anyone has told them what Proofpoint is. Switch users over afterwards if the customer wants portal access.

Convert non-users to functional accounts

Any imported mailboxes will appear in the Proofpoint user list by default. If any of these are shared mailboxes or distribution groups and should not count as active users, these can be converted to functional accounts through the following steps:

  1. Navigate to User Management → Users on the left side of the screen.
  2. Select the users you would like to change, then click Mass Update Users.

image

  1. Change the Role drop-down to Functional Account, then click Update Users at the bottom of the window.

image

Before moving on, compare the user count in Proofpoint under User Management → Users against the number of rows you imported plus the groups you added. A mismatch here is the most common cause of bounces after cutover.

Proceed to next step: Step 4: Configure Google Workspace for Proofpoint

Deploying Proofpoint? We Can Help

We support Proofpoint deployments end-to-end from configuration and migration to optimization, ensuring a smooth rollout with minimal disruption.

Speak to an expert

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article