There's a way to prevent relaying on Exchange 5.5 and it's posted on MS
Technet.  The link is
http://www.microsoft.com/TechNet/exchange/relay.asp and it has nothing
to do with the Pix.  If you're allowing traffic from the Internet to
your Exchg server, then you should only permit access to the ports
required for mail traffic.  I think the "fixup protocol smtp" could help
in preventing certain attacks by only allowing specific commands to be
sent to your mail server but you still need to limit access to the
server.


Vijay Ramcharan


-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] 
Sent: Monday, June 04, 2001 7:39 AM
To: [EMAIL PROTECTED]
Subject: MS exhcnage Security over PIX [7:7046]


Dear fellows, 

How we could secure MS exchange over PIX firewall, we do not want any
unknown user to access Exchange Server5.5 for relaying, is there any way
that we can protect that thru PIX firewall or thru the external
Router???

Immidiate respond will appericiated. 

Regards.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=7070&t=7046
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to