Possibly setup a separate SMTP connection, block any IPs except those
certain internal ones, and force authentication.  Most scripts and
software that use SMTP alerts allow for authentication.

 

 

From: Barsodi.John [mailto:[EMAIL PROTECTED] 
Sent: Thursday, April 24, 2008 12:59 PM
To: MS-Exchange Admin Issues
Subject: Internal SMTP relaying via Exchange

 

Just curious how you guys handle internal SMTP relaying via Exchange?

 

We have several internal apps and developers building notification
mechanisms and right now it's free reign to bounce messages off the
Exchange system.  I will be keeping everything locked down on our new
Exchange 2007 boxes and put a method for approval.   I would prefer
select servers be allowed to relay, but I have developers saying they
have 4 desktops that they need to be able to relay.  Drives me up the
wall because that exposes some serious risk if someone decided to get
malicious and use these for external spamming.  I was just curious how
other admins/companies were handling this issue?

 

- John Barsodi

 

 


~ Ninja Email Security with Cloudmark Spam Engine Gets Image Spam ~
~             http://www.sunbeltsoftware.com/Ninja                ~

Reply via email to