ISA 2004 SMTP Filtering



I might be looking at this in the wrong way, but I'm asking for advice
anyway.

I have an isa 2004 box, on that box I have the MS SMTP service
installed.
The ISA has a publishing rule that points to the internal interface
where SMTP is listening.
In SMTP I have added all of the domains I am authoritive for and told
it to relay mail to those to our mail server.
Set up the message screener to filter out the most common abuses and
various attachments that I dont want to get to our mail server.
The mail server is iMail 2006.2

This all works wonderfully well, mail from utside is filtered nicely
and delivered to our mail server only if it is supposed to get there,
nice work Microsoft.

Now the issue, we have 100 or so users that connect from outside of
our network, and use outlook express or windows mail and use smtp/
pop3. You kinda know whats coming don't you?

If one of these users tries to send an email to google.com, from their
pop3 account (domain1.com, which is on the SMTP server) they are not
allowed to relay to that domain, but they can send to domain2.com,
which is also on the SMTP server.
How do I make it so that we don't accept incoming mail for domains
that we are not, but still allow external SMTP users to send email
through the ISA relay.

Yes I am aware that the rule is for port 25, so all smtp will be
affected, I cannot change the port the clients connect on, not really
an option, and I don't want to make the ISA realy an open relay
because I can see the problems now.

Please, any advice really welcome.
Shaine
.



Relevant Pages

  • Strange SMTP Garbage Flood
    ... Subject: Strange SMTP Garbage Flood ... I'm noticing an increasing amount of weird smtp relay attempts through my ... objective of discovering whether my mail server is an open relay) ...
    (Incidents)
  • Re: Exchange 2003 -> ISA 2004
    ... jedoch weiterhin die Fehlermeldung im ISA Protokollierungslog: ... SMTP fehlgeschlagener Verbindungsversuch auf PORT 25. ... > eigenes Relay auf dem ISA Server einrichten möchte. ...
    (microsoft.public.de.german.isaserver)
  • =?utf-8?Q?Re:_ISA_2006_-_Mails_an_mehrere_?= =?utf-8?Q?E-Mail_Dom=C3=A4nen_zustellen
    ... Das sind SMTP Basics. ... Heißt du installierst im schlimmsten Fall auf dem ISA ein SMTP Relay und kannst dort dann eintragen, welche Domains du annimmst und wohin die weitergeleitet werden sollen. ... (kannst wie schon geschrieben auch intern natürlich MX Records auf deine internen Server pflegen und auch intern per DNS finden lassen) ...
    (microsoft.public.de.german.isaserver)
  • Re: Prob. Outlook in Win 2003
    ... Your SMTP mail server is not configured to relay for domains that you ... E.g. there is no reason for my SMTP ... > installed the Outlook Express which is available in CD ...
    (microsoft.public.security)
  • Re: Exchange 2003 -> ISA 2004
    ... eigenes Relay auf dem ISA Server einrichten möchte. ... Creating a Secure SMTP Relay on a ...
    (microsoft.public.de.german.isaserver)

Quantcast