Re: Accessing pop3 mail from our relay server.
- From: "Al Mulnick" <amulnick_No_SPAM@xxxxxxxxxxx>
- Date: Fri, 19 Aug 2005 12:43:24 -0400
Have you seen what Exchange 2003 + SP2 can do for you?
Have you looked at vendors such as Good (http://www.good.com/)?
Allowing POP3, to me, would be ridiculously crazy in terms of security
issues. There are plenty of other issues to contend with when going down
this path, but even Active Sync might be a better idea if you have all ipaqs
of course :)
The best way to do pop3 in that manner (assuming they force you to do it)
would be to use a secure transport mechanism. POP3 is inherently security
averse because it wasn't intended to be secure. It was intended to be
reliable. It passes information via clear text which in your case would be
clear text across the air waves. Not a great idea for company information
such as email typically provides. Forgetting for a second that those devices
go missing all the time, somebody could easily grab that information from
the air waves if you don't protect it somehow.
ISA can publish POP and SMTP services out to the internet meaning you
wouldn't have to extend your Exchange resources out to a DMZ but instead
would publish those services using ISA server and some authentication
mechanisms.
Keep in mind there is a reason companies like Good and RIM are so popular.
They do a good job and make it much easier to deploy this type of scenario.
FE = Front End server
Al
"Paul" <Paul@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:25BBDD2D-168C-4684-903F-46AFF01E18A6@xxxxxxxxxxxxxxxx
> Thanks Al,
>
> Don't really want to open up pop3 but we have been asked to provide email
> access on pda's for management.
>
> Blackberrys tend to be expensive so we are looking at data services
> provided
> by 02/orange etc which require a pop3 service.
>
> Whats an FE server?? Can you recommend a more secure way of doing this??
>
>
> Kind Regards
>
> Paul.
> "Al Mulnick" wrote:
>
>> Are you sure you want to allow POP3 access to the mailboxes?
>> I had to ask. :)
>>
>> What you describe usually is done via a FE server in Exchange 200x. You
>> *could* use ISA to publish the POP3 (and corresponding SMTP right?) for
>> the
>> mailbox, but the relay server is not going to do what you're after
>> without
>> moving the user's mailbox to the DMZ.
>>
>>
>> Al
>>
>>
>> "Paul" <Paul@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
>> news:C0B8C1A7-D2ED-4E6A-A890-F257718261B3@xxxxxxxxxxxxxxxx
>> > Hi,
>> >
>> > Our organistaion has a exchange 2003 server on our internal network and
>> > a
>> > exchange 2000 server as a relay in our dmz.
>> >
>> > The relay server just forwards mail to the internal server using smtp
>> > all
>> > other protocols and the first storage group have been disabled.
>> >
>> > Both the exchange 2000 server and exchange 2003 server are in separate
>> > domains/exchange organistations.
>> >
>> > Some users need pop3 access to their mailboxes. Is it possible to allow
>> > pop3
>> > access to mailboxes on the internal server through the relay.
>> >
>> > Not too sure if this is possible as the exchange servers are not part
>> > of a
>> > forest and are completely seperate from each both.
>> >
>> > Though I might be able to pull the mailbox off of the internal server
>> > to
>> > the
>> > relay from remote access by clients, is this possible?
>> >
>> > Many Thanks
>> >
>> >
>> > Paul
>>
>>
>>
.
- Follow-Ups:
- References:
- Accessing pop3 mail from our relay server.
- From: Paul
- Re: Accessing pop3 mail from our relay server.
- From: Al Mulnick
- Re: Accessing pop3 mail from our relay server.
- From: Paul
- Accessing pop3 mail from our relay server.
- Prev by Date: Mobile Services and ActiveSync for Exchange 2003 Setup ???'s
- Next by Date: Re: Mobile Services and ActiveSync for Exchange 2003 Setup ???'s
- Previous by thread: Re: Accessing pop3 mail from our relay server.
- Next by thread: Re: Accessing pop3 mail from our relay server.
- Index(es):
Relevant Pages
|