Re: configuring Exchange to accept SMTP connections

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: Colin Nash [MVP] (x_at_x)
Date: 08/03/04


Date: Mon, 2 Aug 2004 21:30:45 -0400

What are you using for the router? One those little "home cable/dsl" type
routers from Linksys, D-Link etc? I guess with that, there isn't much you
can configure. If you were using ISA Server or a Cisco firewall or somekind
of Linux firewall box (for example) you could get more granular.

"chrism" <chris@no_spam> wrote in message
news:%23lnizhOeEHA.2812@tk2msftngp13.phx.gbl...
> Yes, as far as I know there are no ACLs on the router, port 25 is wide
> open.
> thanks for the link !
>
>
> "Colin Nash [MVP]" <cnash x@x mvps.org> wrote in message
> news:Oo6sXSOeEHA.556@tk2msftngp13.phx.gbl...
>> I guess you have just opened up the SMTP port on the firewall... allowing
>> any traffic on that port to pass through?
>>
>> A better way would be actually put a rule on the firewall that specifies
> to
>> only allow SMTP traffic to the sendmail machine's IP. The exact
>> procedure
>> to do this would depend on what your firewall is.
>>
>> May be of interest...
>> http://www.microsoft.com/technet/security/prodtech/mailexch/excrelay.mspx
>>
>>
>> "chrism" <chris@no_spam> wrote in message
>> news:%23LyHxFOeEHA.2764@TK2MSFTNGP11.phx.gbl...
>> > hi folks,
>> >
>> > We have one Exchange 2003 server which is behind our firewall.
>> > This relays to a sendmail SMTP server located in the DMZ.
>> > How can I configure Exchange to only make connections (and rejecting
>> > all
>> > other SMTP connections) to this sendmail smtp server, thus securing it
>> > ?
>> >
>> > Thanks,
>> >
>> > chrism.
>> >
>> >
>>
>>
>
>



Relevant Pages

  • Re: Routers Firewall
    ... I ask him do you have a firewall and he says yes. ... I still have an IDS/firewall on all my machines behind the router. ... > to connect to a port your public IP address the router would reject the ... > An open port on the router could be connected to a service running on the ...
    (comp.security.firewalls)
  • Re: Possible Mail Relay or just new usages of returned mail by spammers
    ... If you have ANY type of firewall, be it a NAT router or true firewall ... ISA can be used in conjunction with the router/firewall, but if you do, you ... to be done twice...once in ISA, and once in the router to port forward to ...
    (microsoft.public.windows.server.sbs)
  • Re: Home firewall Hits
    ... >Port 162 with a UDP message. ... than theres nothing blocking access from the internet to your router. ... >Subject: Home firewall Hits ... >simplify the management and deployment of PGP and reduce overall PGP costs ...
    (Security-Basics)
  • Re: Routers Firewall
    ... > indicates that it has firewall technology, then the router doesn't have a ... What your router does have is NAT. ... ZA is a fine product which will protect a computer ... Port 80 is the WEB access port and port 21 is the FTP ...
    (comp.security.firewalls)
  • Re: Bypassing the firewall
    ... Firewall in the router but i think it comes with Zone Alarm. ... >> The one thing you MUST remember is that an open port is an open port no ... >> So start your game and then start TCPview to see the ports the game is ...
    (comp.security.firewalls)