OWA 2003 in DMZ?



We have setup our new Exchange 2003 FE/OWA in a DMZ, we are having
intermitent problems with the server, it will stay up for a while (12 hours)
then stop accepting requests. Our security person configured the ports on the
firewall and we configured the DCs to connect to the OWA using one port for
rcps to limit the number of prots it uses.
I've been reading articles out there stating that putting a Front End server
in a DMZ in not a good idea, both for security and configuration reasons.
Is that true, should we just put it behind our firewall?
Thanks
.



Relevant Pages

  • Re: Unable to join AD domain from DMZ network
    ... To me that points to something outside the machine (Firewall most likely culprit) ... > the captured traffic between the server in DMZ to the DC from internal ... >>> authentication from DMZ to 2003 AD internal network. ...
    (microsoft.public.windows.server.active_directory)
  • RE: Cant telnet port 25 from server but can from other client
    ... So that's why I don't think the firewall is turned on. ... network configuration in the CEICW has always failed from day one, ... Ethernet adapter Server Local Area Connection: ... telnet to it either on port 25 but it can ping it. ...
    (microsoft.public.windows.server.sbs)
  • Re: Configuring OWA on SBS 2003
    ... I went as far to reboot the server (sorry to the person who was in the ... I told it to skip configuring the firewall. ... firewall to users on the Internet: ... An error occurred during the processing of a configuration ...
    (microsoft.public.windows.server.sbs)
  • Re: Configuring OWA on SBS 2003
    ... I went as far to reboot the server (sorry to the person who was in the ... I told it to skip configuring the firewall. ... firewall to users on the Internet: ... An error occurred during the processing of a configuration ...
    (microsoft.public.windows.server.sbs)
  • Re: Member Server Login Slow DMZ-Internal Subnet
    ... But did I mention that the firewall log showed a successful port 53 ... connection to each DC from the DMZ machine? ... the DMZ machine is the closest AD DC DNS. ... Member Server which was originally installed in the internal subnet ...
    (microsoft.public.win2000.security)