Re: Securing Exchange Server



In article <682CC6B3-F392-441D-A93B-2D1A07D87BFE@xxxxxxxxxxxxx>,
"Tom Bombadil" <Genius_Poster@xxxxxxxxx> wrote:

Hi John,

The only things I would add is that the server is a DC and it has a few
other applications running on it. Also, I have done port forwarding in the
past to FTP and VPN servers, and I always had rootkits and hacks dropped in
them. I had to rebuild the VPN server a couple of times until we totally
took it offline and boufght a Watchguard with VPN functionality.

Are you saying forwarding SMTP and HTTPS ports has been entirely safe in
your professional experience? Am I just being paranoid about this? I can't
help but feel very nervous about the idea of losing one of our 2 servers.

Thanks for your input.

Tom, I'm coming late to this discussion, but I would consider port
forwarding of TCP 25 and TCP 443 to be very safe, and I would recommend
it without hesitation.

Cheers,
-Paul
.



Relevant Pages

  • RE: Some technical errors
    ... If the SMTP server is not running on port 25 TCP it is not a public ... Manager - Computer Assurance Services BDO Chartered Accountants & ...
    (Security-Basics)
  • Re: SRV RRs support in Internet Explorer?
    ... The port number could be implicit (i.e. ... At any point in time, a server could fail ... can't effectively LB or backup because NSs cache the records for the TTL ... I still don't see how SRV records would help backup or LB. ...
    (microsoft.public.win2000.dns)
  • Re: Still cant connect to RWW or OWA remotely
    ... I get 'cannot find server or dns error' on both ... TCP [port number]> to open the ports. ... As for error messages when I fail to access RWW with the laptop, ... network, no connection seems possible. ...
    (microsoft.public.windows.server.sbs)
  • Re: cannot send mail from Windows mail
    ... When a username/password combination doesn't work in Windows Mail, ... I mean I dont use it but as outgoing address for my ISP account. ... youir username and password are correct for your mail server". ... Ask your home ISP if they support SMTP on a port other than 25. ...
    (microsoft.public.windows.vista.mail)
  • Re: How to trigger server to reattempt printer connection
    ... The spooler does not log any SNMP data. ... Best practices and known issues when you install Windows Server 2003 Service ... Before restarting the spooler next time, create a new port name to the ... This does not happen often, but when it does, it seems to stay offline ...
    (microsoft.public.windows.server.general)