Re: Securing Exchange Server
- From: "John Fullbright" <fjohn@donotspamnetappdotcom>
- Date: Tue, 11 Mar 2008 12:34:46 -0700
Port forward SMTP and HTTPS. If you want, you can send the SMTP through the
proxy on watchguard. I find going through a secure proxy or daemon a mixed
bag though. For certain versions of PIX, mailguard can do funny things. A
quirk specific to watchguard; if inbound email addresses have an apostrophe
in them, you have to edit the incoming SMTP policy to allow them.
"Tom Bombadil" <Genius_Poster@xxxxxxxxx> wrote in message
news:BB720DF5-A07E-4C90-B41A-DA8EF5AFACF2@xxxxxxxxxxxxxxxx
Hello,
We are a small company and we are looking to implement Exchange as our
main messaging system.
I wanted to ask for your suggestions as to the best method of securing the
Exchange. We have a Watchguard firewall with an embeded DMZ. Is the
front-end server the only way to go? Are there any appliances that do the
job of a front-end server, without the risk of it being hacked or brought
down?
I'm a little weary of opening the firewall ports from past experience. I
had previously forwarded ports to FTP and VPN servers, and they always got
hacked or had rootkits dropped in. I cannot take that chance with the
Exchange.
Thank you for your input.
.
- References:
- Securing Exchange Server
- From: Tom Bombadil
- Securing Exchange Server
- Prev by Date: Re: Securing Exchange Server
- Next by Date: Re: Exchange Design Help
- Previous by thread: Re: Securing Exchange Server
- Next by thread: Exchange 2003 design for 2 sites
- Index(es):
Relevant Pages
|