[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW1] Mail Proxy. Anyone can help me?
Greetings! Carlo Malandrini schrieb: > MS Exchange Server 5.5 as mail sistem. We plan to leave the mailserver in the > internal network, but we are just wondering if it is a safe behavior to allow > external mail servers to connect to ours directly through the firewall or if > it better to install a mail proxy (maybe set up in a dmz) with the task of > accepting inbound mail connection. In the latter case, this mail proxy should > be skilled enough to detect some evil behavior (spamming, relaying, bad mail > protocol systax and so on). You can choose to install a virus scanner (e.g. Trend InterScan VirusWall) that acts SMTP relay into the DMZ - this way you get an mail proxy with the benefit of mail virus-scanning. But beware: not all AV-products can be used as proxy and even less have anti-relay or RBL support. If your budget is really tight (probably not - you licensed FW1 after all) you might have a look at one of the free Unixes (OpenBSD, Linux) and a simple, secure mail server (postfix, exim) to do that job - an old dekstop machine will probably be sufficient. Shameless (generic) plug: calling yourself a rookie, I guess that is your first security installation? You should contract security experts (e.g. a company like us) for advice and setup. This way you will get a secure installation and you can learn a lot that is not taught in seminars. bye Volker -- Volker Tanger <[email protected]> Wrangelstr. 100, 10997 Berlin, Germany DiSCON GmbH - Internet Solutions http://www.discon.de/ ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|