Re: Closing Port 25 for Internal Clients

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Cris is pointing out a more fundamental problem, that of updates. The patch to address conficker was released in October08.

--
SBS remote support services. (Fees apply)
mickm at mickmalloy dot dyndns dot org
"Daniel Jewel" <cyberdudeiq@xxxxxxxxxxxx> wrote in message news:672BB1AC-4C77-42A5-80ED-54736B316D60@xxxxxxxxxxxxxxxx
Sadly, this customer neglected the importance of keeping the anti-virus current. They now suffer the consequences with conficker already causing major disruption... To this point we see no other objective solution except to format all worksratins...they also bought the anti-virus renewel...
Thanks,
Dan
"Cris Hanna [SBS-MVP]" <crisnospamhanna@xxxxxxxxxxxxxxxxxxxxx> escreveu na notícia da mensagem:uMaT4DiuJHA.5452@xxxxxxxxxxxxxxxxxxxxxxx
personally my preference is hardware firewall that does UTM so it never gets inside the network...
And closing port 25 to workstations only really prevents them from sending it back out.
As long as the server and all workstations are fully patched(the conflicker patch came out around 6 months ago), conflicker shouldn't be an issue.

-- Cris Hanna [SBS - MVP]
Co-Contributor, Windows Small Business Server 2008 Unleashed
http://www.amazon.com/Windows-Small-Business-Server-Unleashed/dp/0672329573/ref=pd_bbs_sr_1?ie=UTF8&s=books&qid=1217269967&sr=8-1
Owner, CPU Services, Belleville, IL
A Microsoft Registered Partner
------------------------------------
MVPs do not work for Microsoft
Please do not submit questions directly to me.


"Daniel Jewel" <cyberdudeiq@xxxxxxxxxxxx> wrote in message news:uUZPgwhuJHA.4444@xxxxxxxxxxxxxxxxxxxxxxx
Great Chris,
Many thanks...this is part of the process to combat conficker...
Do you suggest any other ?
Thanks,
Dan
"Cris Hanna [SBS-MVP]" <crisnospamhanna@xxxxxxxxxxxxxxxxxxxxx> escreveu na notícia da mensagem:urSlD3fuJHA.1300@xxxxxxxxxxxxxxxxxxxxxxx
This link mentions ISA 2000 but the theory is the same
http://forums.isaserver.org/m_2002075978/mpage_1/key_/tm.htm#2002075978


-- Cris Hanna [SBS - MVP]
Co-Contributor, Windows Small Business Server 2008 Unleashed
http://www.amazon.com/Windows-Small-Business-Server-Unleashed/dp/0672329573/ref=pd_bbs_sr_1?ie=UTF8&s=books&qid=1217269967&sr=8-1
Owner, CPU Services, Belleville, IL
A Microsoft Registered Partner
------------------------------------
MVPs do not work for Microsoft
Please do not submit questions directly to me.


"Daniel Jewel" <cyberdudeiq@xxxxxxxxxxxx> wrote in message news:14A0D61F-83F8-48BE-97FB-846D98D0C30D@xxxxxxxxxxxxxxxx
Hi all,

How do I close port 25 on my internal network? and allowing ONLY the SBS
2003 Server?
The server is SBS 2003 R2 with 2 NICs and ISA 2004 installed...all SPs
applied.

Thanks,
Dan

.



Relevant Pages

  • Re: Sharepoint Intranet installation error
    ... Cris Hanna [SBS - MVP] ... A Microsoft Registered Partner ... Have made sure entire drive is uncompressed and installation still ...
    (microsoft.public.windows.server.sbs)
  • Re: ActiveSync setup for iPhone
    ... Cris Hanna [SBS - MVP] ... Windows Small Business Server 2008 Unleashed ... A Microsoft Registered Partner ...
    (microsoft.public.windows.server.sbs)
  • Re: Incoming ports for SBS2008
    ... Cris Hanna [SBS - MVP] ... Windows Small Business Server 2008 Unleashed ... A Microsoft Registered Partner ...
    (microsoft.public.windows.server.sbs)
  • Re: Fax modem for SBS 2008
    ... I have an old ZOOM 33.6K external modem connected to my SBS 2008 server. ... Dave never really has spelled out what his requirement is and what the one was that he tried that didn't work. ... Cris Hanna [SBS - MVP] ... A Microsoft Registered Partner ...
    (microsoft.public.windows.server.sbs)
  • Re: Changing Administrator Password
    ... Cris Hanna [SBS - MVP] ... Windows Small Business Server 2008 Unleashed ... A Microsoft Registered Partner ...
    (microsoft.public.backoffice.smallbiz2000)