OWA on different server?

2001-11-29 Thread bmurphy
(Exch 5.5 SP2, W2k Server, IIS 5.0) Before I run off and try this I wanted to check with everyone. I seem to remember reading somewhere that you could install OWA on a server that is not associated with the Exchange Server. This server would be a standalone system. I believe it stated that you

RE: OWA on different server?

2001-11-29 Thread bmurphy
Never mind. Tried it anyway. It works! -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Thursday, November 29, 2001 2:12 PM To: Exchange Discussions Subject: OWA on different server? (Exch 5.5 SP2, W2k Server, IIS 5.0) Before I run off and try this I wanted

Question about Antigen @ Badtrans

2001-11-30 Thread bmurphy
Hello Kelly. I am using the Antigen Product version 6.2 running on Windows 2000 Advanced Server with Exchange 5.5 Service Pack 4. I am using the Mcafee 4x and Sophos scanning engines. Updated this morning at 5am. I am running Norton Antivirus on the local machine (also updated this morning)

RE: Back Up Exec

2001-11-30 Thread bmurphy
Not really sure what your asking but here is my answer anyway. Download the latest build from Veritas Website Contact a vendor about obtaining a license. (www.softchoice.com) You will need the Veritas Backup and Exchange Agent. Obviously the software has to be installed on the Exchange Server. L

RE: Internet Mail Header Investigation

2001-11-30 Thread bmurphy
According to the available knowledge articles I would say that you have your "routing" setup correctly. This is similiar to how mine is set except I have "null" for my Host and Clients... This prevents any relaying (or is suppose to). -Original Message- From: Blunt, James H (Jim) [mailto

RE: Exchange 5.5 and Mail forwarding

2001-11-30 Thread bmurphy
Run Exchange Admin. Create Custom Recipient (the forwarding address) Locate original recipient from recipient list. Check out the Delivery Options Tabs. Select the Alternative Recipient button at the bottom. Choose your custom recipient. -Original Message- From: Ralf Eisele [mailto:[EMA

RE: Question about Antigen @ Badtrans

2001-11-30 Thread bmurphy
A review of the Virus Incidents report shows that the Internet Mail connector has killed about 30 virus today alone. I have Internet Scanning and Realtime scanning enabled on this box. I also perform a manual scan everyday at noon. All scans are set to scan for virus and file filtering. I

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Your MX record is incorrect. Did you change the ip address of the box? What is your MX record. If you can send mail and not receive I would look here first. -Original Message- From: Brett Wesoloski [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 3:04 PM To: Exchange Discussio

RE: Question about Antigen @ Badtrans

2001-11-30 Thread bmurphy
To answer your other questions: I only run Antigen on the Exchange Server. Nothing else. Norton runs on my desktop and "found" and "cleaned" the virus. Which means it somehow made it through the Internet and Realtime scan jobs. I'm not trying to point fingers Maybe I have something conf

RE: Question about Antigen @ Badtrans

2001-11-30 Thread bmurphy
This is the Norton text? "Norton AntiVirus removed the attachment: Unknown0289.data. The attachment was infected with the W32.Badtrans.B@mm virus." -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 3:12 PM To: Exchange Discussions Cc: [E

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
You have several problems to deal with. First. Your MX record is a DNS record on the Internet. Whom is your ISP or service provider. Whom hosts your DNS (external that is)? The addresses you assigned are not routable IP's. This means you need to assign a duplicate IP that is routable to the

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Heres a good start: Your WHOIS INFO SHOWS: NS1.ITOL.COM63.145.206.8 ADMIN.ITOL.COM 209.62.160.14 These are your dns servers: Nslookup of MX records show: mail.klemmtanklines.com MX 10 mail.itol.com MX 50 Internet Address: 207.170.31.254 (Mail) Bind this to your ca

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Thank goodness I took all those typing classes in high school and college. And they all thought I was strange :) -Original Message- From: Kevin Miller [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 3:39 PM To: Exchange Discussions Subject: RE: HELP Can't send mail Th

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
I'll send you a bill Check's in the mail right? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 3:42 PM To: Exchange Discussions Subject: RE: HELP Can't send mail Heres a good start: Your WHOIS INFO SHOWS: NS1.ITOL.COM

RE: Internet Mail Header Investigation

2001-11-30 Thread bmurphy
Nope. This has nothing to do with sending SMTP mail via relay. This is a function of how you setup your relaying in the connections tabInternet Mail Service. I'm assuming that the unix boxes send all the mail to the same domain. One recommendation is to setup a custom "Email Domain" on the

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Is your proxy server running Exchange? With Internet Mail Connector? If you rebuilt your server you might have screwed up the site connector between the servers. :) -Original Message- From: Brett Wesoloski [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 3:54 PM To: Exchange

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Ok. Well who is "itol.com" in relation to your company. You only have two ip's to choose from on your mx records: mail.itol.com 209.62.160.14 mail.klemmtanklines.com 207.170.31.254 Do a port scan on your Proxy Box. Your probably running an SMTP relay of some sort back to the other Exchange

RE: Internet Mail Header Investigation

2001-11-30 Thread bmurphy
Something along this lines.. "This message is in MIME format. Since your mail reader does not understand this format, some or all of this message may not be legible." -Original Message- From: Blunt, James H (Jim) [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 4:04 PM T

RE: Internet Mail Header Investigation

2001-11-30 Thread bmurphy
(You might have already stated this) But, are you logging smtp events. - "From: System Administrator <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Subject: Undeliverable: FREE American Flag Pin - No purchase necessary -- Setup a Distribution list for and assign this smtp

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Define forward? Are they forwarding this IP address to a firewall that subsequently forwards packets to specific ports? In other words is this IP address bound to your proxy server or a firewall (hard box) like Cisco Pix or something similiar that has port forwarding capability (or a NAT Box)?

RE: Internet Mail Header Investigation

2001-11-30 Thread bmurphy
As matter of fact, I brought up this issue a few weeks back on a similar problem I was having. I received some good feedback and some even better flames. Check some of those posts and see if they provide any info. They subject lines had "open relay" if I remember correctly. -Original Messa

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Hmm. So you have a dual-homed proxy server with an external ip address bound to one card and an internal ip address bound to another card. Your MX record is pointing to your Proxy Server but you do not have an SMTP relay or Exchange running an Internet Mail Connector to forward mail to your inter

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Also. Do a services check. DO you see anything like nmap running. Someone could have setup a port redirector on the box. Easiest way to find out. Perform a port scan against this box (please). Goto www.google.com and search for port scanner. Download an eval and scan the box. This will giv

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
One last thing before I leave you all Not sure why you installed Proxy Client on the Exchange box but please remove it. I cannot think of a reason why you would need it at this time and I'm not sure of the ramifications of installing it on Exchange server but I'm sure there are some. After

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
It definitely sounds like installing Exchange on the Proxy is his best bet... I'm just wondering how it was all working prior to his internal server crashing? He never had Exchange installed on the Proxy? Just the internal server. -Original Message- From: Allan Johnson [mailto:[EMAIL

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Ok.. I'm really leaving now. Later. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 5:12 PM To: Exchange Discussions Subject: RE: HELP Can't send mail It definitely sounds like installing Exchange on the Proxy is his best bet... I'm

RE: HELP Can't send mail

2001-11-30 Thread bmurphy
Congrats. Strange that Exchange was never installed on Proxy in the first place. Go figure. At least it works now. -Original Message- From: Brett Wesoloski [mailto:[EMAIL PROTECTED]] Sent: Friday, November 30, 2001 6:35 PM To: Exchange Discussions Subject: RE: HELP Can't send mail We

RE: How can the Admin delete a message from a users mailbox?

2001-12-05 Thread bmurphy
IF the user has not read the email you can goto Sent Items - Actions - Recall This Message. You then have a few options that might come in handy. -Original Message- From: Paul Bouzan [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 05, 2001 3:22 PM To: Exchange Discussions Subject:

Exch 2k Prep

2001-12-05 Thread bmurphy
Just wondering... Does the Internet Mail connector get any better in Exchange 2000. Every frikin change I make in Exch 5.5 I have to restart the service which jacks which causes other problems for my A/V software. _ List posting FAQ

Here Goes. Exch2k

2001-12-06 Thread bmurphy
Ok everyone. Getting ready to install Exc2k on a test system. I am downloading the eval. Installing on Windows 2000 Server running active directory. Anyone want to point me to some good stuff before I start? _ List posting FAQ:

RE: Here Goes. Exch2k

2001-12-06 Thread bmurphy
Besides the faq. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 06, 2001 1:55 PM To: Exchange Discussions Subject: Here Goes. Exch2k Ok everyone. Getting ready to install Exc2k on a test system. I am downloading the eval. Installing on

RE: Here Goes. Exch2k

2001-12-06 Thread bmurphy
Yeah. I'm reading some of the stuff from Microsoft's websiteIt just take so long to read some of their stuff! Patience is not a strong point for me. -Original Message- From: Lefkovics, William [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 06, 2001 1:55 PM To: Exchange Discussi

RE: Here Goes. Exch2k

2001-12-06 Thread bmurphy
yes. That's what I'm looking for. I need some good books to read. Good recommendations. Some of the books currently published are a waste of my time. -Original Message- From: Tony Hlabse [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 06, 2001 2:02 PM To: Exchange Discussions Su

RE: Here Goes. Exch2k

2001-12-06 Thread bmurphy
Had some experience in the past with the following: Windows NT 3.51 Windows NT 4.0 Windows NT 4.0 Terminal Server Windows 2000 Exchange 5.0 Exchange 5.5 I've read enough books by now to understand you should ask for recommendations instead of reading every book published on the subject. Believe m

RE: Email Scanners

2001-12-06 Thread bmurphy
Sybari (www.sybari.com) Antigen 6.2. New build should be out soon that allows the content filtering. -Original Message- From: Lefkovics, William [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 06, 2001 6:39 PM To: Exchange Discussions Subject: RE: Email Scanners Does it duplicate e

RE: Message tracking

2001-12-07 Thread bmurphy
Is the folder shared? (I'm assuming Exch 5.5). I've seen this when the share is not enabled. (C:\exchsrvr\tracking.log) Share name (tracking.log) -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Friday, December 07, 2001 12:22 PM To: Exchange Discussions Subj

Filter Sets and Users trying to bypass them.

2001-12-09 Thread bmurphy
I am experiencing a "high volume" of users attempting to bypass my filter set by renaming the extensions. For example, I filter *.exe and about 15 other extensions. However, the users got smart at one point and renamed the extension to *.txt. So, I had to start filtering *.txt files. I'm to

Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
I am expereincing some time of mail loop and not sure how to get rid of it. I have 638 messages (so far) from Antigen like this: Antigen found ATT04643.TXT matching =*.txt file filter. The file is currently Removed. The message, "DELIVERY FAILURE: User Postmaster ([EMAIL PROTECTED]) not listed

RE: Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
I filter all files. I have to because my users rename their *.exe files and other stuff (change the extension) to "try" and bypass my firewall. (Admin Box) All reports go to a Postmaster Distribution List of which I'm a memember. Here's the deal. I have been filtering text file's for some time.

RE: Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
Strange thing is that I don't appear to be getting anything to the postmaster distribution list related to this. I am logging smtp events and this is what shows up. Realtime scan found virus: Folder = ANTIGEN_SERVER\Inbox Message = DELIVERY FAILURE: User Postmaster ([EMAIL PROTECTED]) not

RE: Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
How can I "black list" this sender in Exch 5.5. I tried using "Message Filtering" on the Connections tab but this does not seem to work. Thanks. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Monday, December 10, 2001 9:45 AM To: Exchange Discussions Subje

RE: OWA -- No text

2001-12-10 Thread bmurphy
It seems like I've seen this before. Try resetting the permissions on the Webdata directory to "Everyone" Full. Just add this for now and retest. -Original Message- From: William Smith [mailto:[EMAIL PROTECTED]] Sent: Monday, December 10, 2001 9:47 AM To: Exchange Discussions Subject: O

RE: Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
Yeah. -Original Message- From: Chris Scharff [mailto:[EMAIL PROTECTED]] Sent: Monday, December 10, 2001 9:43 AM To: Exchange Discussions Subject: RE: Mail Loop? 638 messages from Antigen (so far). Did you stop and start the IMS? Chris -- Chris Scharff Senior Sales Engineer MessageOne

RE: Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
I'm logging full on SMTP interface events. -Original Message- From: Chris Scharff [mailto:[EMAIL PROTECTED]] Sent: Monday, December 10, 2001 9:43 AM To: Exchange Discussions Subject: RE: Mail Loop? 638 messages from Antigen (so far). Turn up logging on your IMS? Can you disable notifica

RE: Mail Loop? 638 messages from Antigen (so far).

2001-12-10 Thread bmurphy
It's almost the equivalent of a DOS attack because the sender: [EMAIL PROTECTED] Keeps sending this message: DELIVERY FAILURE: User Postmaster ([EMAIL PROTECTED]) TO: [EMAIL PROTECTED] I"M NOT SENDING anything to this! Unless there is some type of l

RE: I'm using Ed Crowly Move Sever method...

2001-12-11 Thread bmurphy
Connectors: This would be an Internet Mail connector or something similiar. More than likely this box was used to send and recieve internet mail. So you need to decide if you want to remove Exchange from this box or not. If you remove Exchange from this box you will not receive (or be able to

RE: I'm using Ed Crowly Move Sever method...

2001-12-11 Thread bmurphy
Actually- I would be delete the existing connector and recreate it. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 11, 2001 3:18 PM To: Exchange Discussions Subject: RE: I'm using Ed Crowly Move Sever method... Thanks. When you say move co

RE: OWA 5.5sp4 on IIS5/Win2k SP2

2001-12-12 Thread bmurphy
Let's examine a few things: 1. You stated that the server is a standalone system. However, is it a member of the NT Domain. 2. Under IIS properties (Directory Security) do you have Anonymous access checked and Basic Auth. Under Basic Auth do you have the domain preset. (Side note) If you do

RE: Does anyone know...

2001-12-12 Thread bmurphy
I think this is pretty cut-and-dry like I explained earlier. Under the Connections tab of your Exchange Administrator utility you will see "Internet Mail Service"... Or at least you should if you have been sending and receiving Internet Email. Notice the settings on this connector and write them

RE: OWA 5.5sp4 on IIS5/Win2k SP2

2001-12-12 Thread bmurphy
Ok. How about this. I'm "guessing" this is not your Exchange Server. What are the properties of the following reg key: HKLM\System\CurrentControlSet\Services\MSExchangeWeb\Parameters The following three keys are of interest: Enterprise - Must match that of your Exchange Server Site - Ditto Ser

RE: Does anyone know...

2001-12-12 Thread bmurphy
This would not have been what I guessed. This tells me that you have a smarthost somewhere on the other side of a firewall and/or someone is allowing you to relay off their system. This complicates the issue. Is your Proxy Server multihomed or does it simply provide "Authentification" services

RE: Does anyone know...

2001-12-12 Thread bmurphy
Generally if your Proxy Server is multihomed and setup to send and recieve mail then this would be set to Use DNS. Unless you have another smarthost out their somewhere. I'd be curious as to whether your proxy is "directly" connected or behind another device. Easy way to check this is get a cmd

RE: Does anyone know...

2001-12-12 Thread bmurphy
It sounds like your best bet is to retain Exchange on both systems. Keep the settings the same on your Proxy Server Exchange Internet Mail connector. Add an additional Internet Mail Connector on the 2nd Exchange Server to forward outgoing SMTP to the 1st exchange server. I believe this will w

RE: OWA 5.5sp4 on IIS5/Win2k SP2

2001-12-12 Thread bmurphy
Only one domain right? No resource domains or anything? -Original Message- From: Wynkoop, John [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 12, 2001 2:43 PM To: Exchange Discussions Subject: RE: OWA 5.5sp4 on IIS5/Win2k SP2 We have 3 BDC's I'll reboot them later tonight and see

RE: Does anyone know...

2001-12-12 Thread bmurphy
I disagree. You cannot create the IMS on the new machine and not have it route thru the old server. The old server is the only "EXIT" point out of the network being that it is a multihomed proxy server. You can't stick the IMC on the internal server and expect it to know how to send and receive

RE: Does anyone know...

2001-12-12 Thread bmurphy
Unless you use the Proxy Server to Exchange Server socks method but I cannot see that method working if your using a smart host on the outside for mail relay. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 12, 2001 2:52 PM To: Exchange

RE: TrendMicro ESE vs. AVAPI

2001-12-12 Thread bmurphy
I suppose you can but have you looked at Antigen for Sybari. I would highly recommend you check their product out first. (www.sybari.com) -Original Message- From: Edwards, Aaron [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 12, 2001 2:56 PM To: Exchange Discussions Subject: RE: T

RE: Does anyone know...

2001-12-12 Thread bmurphy
I guess, but, DNS does not "relay" mail. Even if you have your default gateway for the internal machine set to the proxy server you would still need some type of "relay" on the proxy. Also, this person is probably using a DNS server that is internal and might not know the proxy server even exist

RE: Does anyone know...

2001-12-12 Thread bmurphy
PS. Enabling routing on Proxy Server 2.0 essentially "Disables" proxy server. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 12, 2001 2:59 PM To: Exchange Discussions Subject: RE: Does anyone know... I guess, but, DNS does not "relay" ma

RE: Does anyone know...

2001-12-12 Thread bmurphy
I noticed. But is there anyway you can "expound" on this comment. If there is something to be learned "I'm all ears" but you did not state "How" this would occur. Can you be more specific? -Original Message- From: Andy David [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 12, 2001

RE: Does anyone know...

2001-12-13 Thread bmurphy
Ah. Now I'm with ya. My bad. -Original Message- From: Andy David [mailto:[EMAIL PROTECTED]] Sent: Wednesday, December 12, 2001 3:15 PM To: Exchange Discussions Subject: RE: Does anyone know... hmmm. Well maybe its late in the day or maybe its the anticipation of my pending Christmas p

RE: Newsgroups on Exchange? any Alternatives?

2001-12-13 Thread bmurphy
I'm not sure that Exchange supports your definition of "newsgroup". If I remember correctly you can do some tricky stuff using Public Folders but don't remember...I believe that "Ed Crowley" (Did I spell it right? ) has written some stuff about this? -Original Message- From: Arnold, Paul

RE: MSExchangeMTA event errors

2001-12-13 Thread bmurphy
How old is the hardware? What are the specs? -Original Message- From: Joyce, Louis [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 13, 2001 10:02 AM To: Exchange Discussions Subject: RE: MSExchangeMTA event errors i looked there this morning hoping to shed some light to no avail.

RE: OWA 5.5sp4 on IIS5/Win2k SP2

2001-12-13 Thread bmurphy
This still sounds like a domain issue. Is the standalone box running AD? -Original Message- From: Allan Johnson [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 13, 2001 10:24 AM To: Exchange Discussions Subject: RE: OWA 5.5sp4 on IIS5/Win2k SP2 Have you installed the Ex. SP4 on the

RE: Installing E5.5 on W2K box

2001-12-13 Thread bmurphy
Crashing? What type of hardware? Specs? -Original Message- From: Martin Blackstone [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 13, 2001 2:38 PM To: Exchange Discussions Subject: RE: Installing E5.5 on W2K box Anything more you can shareWhat do you mean exploding? Error mes

RE: Installing E5.5 on W2K box

2001-12-13 Thread bmurphy
Is the box a member of an NT Domain? -Original Message- From: DeGourney, Wayne [mailto:[EMAIL PROTECTED]] Sent: Thursday, December 13, 2001 2:41 PM To: Exchange Discussions Subject: RE: Installing E5.5 on W2K box Receive a "unknown has generated an error, please restart your application

RE: SSL and Outlook Web Access

2001-12-17 Thread bmurphy
How did you validate this problem. Is there a knowledge base article somewhere that describes this issue. Just wondering if this is a known issue or not? -Original Message- From: Grewal, Raj [mailto:[EMAIL PROTECTED]] Sent: Monday, December 17, 2001 11:49 AM To: Exchange Discussions Sub

RE: Urgent Help Needed smtp causing srv to slow right down

2001-12-17 Thread bmurphy
Log the SMTP Interface Events? -Original Message- From: roger [mailto:[EMAIL PROTECTED]] Sent: Monday, December 17, 2001 2:12 PM To: Exchange Discussions Subject: RE: Urgent Help Needed smtp causing srv to slow right down I cant see it being the NIC as when i disable SMTP all becomes ok

RE: Urgent Help Needed smtp causing srv to slow right down

2001-12-17 Thread bmurphy
Also, this sounds like a more serious problem being that users cannot access the internet and/or send/receive mail. Maybe a bad network card. Can you ping your default gateway? Can you ping an outside internet address? -Original Message- From: Chris Scharff [mailto:[EMAIL PROTECTED]]

RE: Help please

2001-12-17 Thread bmurphy
Upgrade to version 6.0 IOS. Use the Static Port commands to redirect users to the internal OWA site instead of your Proxy Server first. This works even if your using a DMZ card. Also, can you clarify "redirect my MX record exchange server address to the server"? Also... How many valid static

RE: Allowing internal SMTP but not external

2001-12-17 Thread bmurphy
Yes. Dunno about Exc 2k but you can enable the option that states "Allow mail from these recipients only!" -Original Message- From: Tom Meunier [mailto:[EMAIL PROTECTED]] Sent: Monday, December 17, 2001 3:55 PM To: Exchange Discussions Subject: RE: Allowing internal SMTP but not extern

RE: Allowing internal SMTP but not external

2001-12-17 Thread bmurphy
As stated earlier...validate your MX record and dns records. Install version 6.0 of the PIX IOS. Setup a static route like this: static (inside,outside) tcp (external_ip) www (internal_ip) www netmask 255.255.255.255 With a corresponding Access-list entry: access-list 100 permit tcp any host (e

RE: Allowing internal SMTP but not external

2001-12-17 Thread bmurphy
Hmm. Well there is an option on each mailbox that you can setup the mailbox so that they only receive mail from internal users. I thought this was what you were requesting. -Original Message- From: Walden H. Leverich [mailto:[EMAIL PROTECTED]] Sent: Monday, December 17, 2001 4:59 PM To:

RE: Help please

2001-12-18 Thread bmurphy
Upgrade to 6.0 IOS -Original Message- From: Don Ely [mailto:[EMAIL PROTECTED]] Sent: Monday, December 17, 2001 9:07 PM To: Exchange Discussions Subject: RE: Help please I can't recall some great examples off hand, but I remember a time where the PIX would to funny things to the network

RE: Allowing internal SMTP but not external

2001-12-18 Thread bmurphy
After re-reading the problem I have to agree. I should have read the entire message. I missed the part about being able to receive internal smtp mail. This will only work if the users are located on the GC. -Original Message- From: Ed Crowley [mailto:[EMAIL PROTECTED]] Sent: Tuesday,

RE: Help please

2001-12-18 Thread bmurphy
That doesnt make any sense. Download the file to a server running tftp. Tftp the image to your router? -Original Message- From: Ronald Mazzotta [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 9:13 AM To: Exchange Discussions Subject: RE: Help please Can't upgrade to 6.0. c

RE: Help please

2001-12-18 Thread bmurphy
What version are you on now? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 9:21 AM To: Exchange Discussions Subject: RE: Help please That doesnt make any sense. Download the file to a server running tftp. Tftp the image to your r

RE: Help please

2001-12-18 Thread bmurphy
Logging is fairly straight forward. Telnet to device and add the following lines logging on logging timestamp logging trap errors logging history errors logging facility 7 logging host inside (internal_ip) Your "logging host inside" needs to be running "compliant" software. Complaint define

RE: Help please

2001-12-18 Thread bmurphy
Are you using an "host headers" on your IIS Server? -Original Message- From: Don Ely [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 10:08 AM To: Exchange Discussions Subject: RE: Help please Is the 63.x.x.x address the client address or what? What shows up in the logs when

RE: Help please

2001-12-18 Thread bmurphy
I'm not sure why your using host headers but you need to do one of two things: 1. First, make sure that your IP address is set to "all unassigned" 2. Next, remove the host headersor 3. or add the host header matching your outside alias (dns). -Original Message- From: Don Ely [

RE: Help please

2001-12-18 Thread bmurphy
Oh. -Original Message- From: Peter Szabo [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 10:38 AM To: Exchange Discussions Subject: Re: Help please Guys, I don't think this is a routing problem. I can access the default web page on tahoe.sss-cpa.com w/o any problem. This IS

RE: Help please

2001-12-18 Thread bmurphy
I'm not sure I see the relevance of forwarding the ip packets to the proxy then to the internal server. Your not accomplishing anything different then directly forwarding the port 80 packets to your internal owa server. I only say this because your behind the PIX firewall. I could understand if

RE: Help please

2001-12-18 Thread bmurphy
Also... When you upgrade to 6.0 make sure you add the following lines: ip audit info action alarm ip audit attack action alarm no snmp-server location no snmp-server contact snmp-server community public no snmp-server enable traps floodguard enable Thx. Murphy -Original Message- From:

RE: Help please

2001-12-18 Thread bmurphy
Yes. Using the static commands. I would not use conduit commands in 6.0 IOS. Use a static command like I described below. This way you can use 1 IP address to redirect different ports to different servers. For example: Using one IP you can setup several different redirects static (inside,ou

RE: Help please

2001-12-18 Thread bmurphy
Conduit commands are not recommended or supported in 6.0 and above. -Original Message- From: Don Ely [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 11:28 AM To: Exchange Discussions Subject: RE: Help please The tcp and www statement should be in a "conduit permit" statement

RE: Help please

2001-12-18 Thread bmurphy
Upgrade to 6.0 first. -Original Message- From: Ronald Mazzotta [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 11:32 AM To: Exchange Discussions Subject: RE: Help please Had to install kiwi enterprise syslog. Did everythin stated but no info is logged to the syslog server

RE: Help please

2001-12-18 Thread bmurphy
One more thing. Before you upgrade to 6.0 make sure you have a copy of your original config. Hopefully you have something like Reflections (vs M$ telnet). Next type: show config (enable mode) Copy and paste the config to a text file for future reference. Some of the command sets are obsolete

RE: Help please

2001-12-18 Thread bmurphy
You need to get additional IP addresses. You need one IP bound to the external interface as your PAT Address only. You need additional IP's for services with duplicate ports running on different servers. Or, you can do something sneaky like setup your owa site on a different http port like 100

RE: Help please

2001-12-18 Thread bmurphy
Yeah. You just need to bind your owa server to port 90 or 100 and set your static command to route port 90 or 100 to the internal IP address 192.168.0.0. The proxy server redirect does not add any additional security to your existing config and just adds an additional hop. -Original Message

RE: Help please

2001-12-18 Thread bmurphy
Keep the fixups and disable esmtp on the exchange server. There is a knowldedge base article on this. Use www.google.com to search for it. I would not use M$ search site. -Original Message- From: Ronald Mazzotta [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 1:41 PM To:

IIS SMTP Server (IIS5)

2001-12-18 Thread bmurphy
This seems like a dumb question (being that I should know the answer) but here goes. I have a system in which I have the SMTP Server setup. IIS 5.0. W2k SP2 and so forth. The system is behind a firewall in a dmz config situation. I have the SMTP component set to route using DNS for the primar

RE: Help please

2001-12-18 Thread bmurphy
Just partial to google. Try and see. -Original Message- From: Don Ely [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 2:20 PM To: Exchange Discussions Subject: RE: Help please And I would not use the M$ indicator... :P As to why you wouldn't search the MS Site, what are y

RE: IIS SMTP Server (IIS5)

2001-12-18 Thread bmurphy
Yes. I've been using the internal IP only. No host name for the forward to: -Original Message- From: Byron Kennedy [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 2:52 PM To: Exchange Discussions Subject: RE: IIS SMTP Server (IIS5) on the dmz smtp server set the remote dom

RE: Help please

2001-12-18 Thread bmurphy
You cannot ping through a pix. You would have to add a ICMP any any to your ACL. -Original Message- From: Ronald Mazzotta [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 3:01 PM To: Exchange Discussions Subject: RE: Help please Well the solution I created is nto going to wo

RE: Help please

2001-12-18 Thread bmurphy
Yeah. I specifically stated not to map to your proxy first. Send straight to the 192.168.x.x of the OWA Box. ALso, you need to modify a few things on this box. This box should have one nic. I'm assuming the pix is connected to your lan. The OWA box needs to point to the pix as it's default g

RE: Help please

2001-12-18 Thread bmurphy
It sounds like your PIX is configured wrong. Your proxy is configured wrong for this config too. The center point in this equation should be your PIX. It does not sound like your using the DMZ so use the following strategy. Your Proxy is currently multihomed. Disable the external interface (I'

RE: Help please

2001-12-18 Thread bmurphy
That's a problem. Read previous mail. -Original Message- From: Ronald Mazzotta [mailto:[EMAIL PROTECTED]] Sent: Tuesday, December 18, 2001 3:20 PM To: Exchange Discussions Subject: RE: Help please I think we are missing something. There is no possible way to not go through proxy. Hes

RE: Help please

2001-12-18 Thread bmurphy
Your making this harder then it needs to be. The PIX is your Firewall...not the proxy. Proxy is basically being used to Authenticate Internet Access to internal users. Your Proxy, Exchange Server, and OWA server, etc should be pointing directly to your PIX Firewall. The PIX Firewall should

Possible Trojan.

2001-12-22 Thread bmurphy
I have an outside client experiencing what appears to be a Trojan on their machine. I had them update their Antivirus (Norton) and perform a scan but there still appears to be something wrong. I originally noticed the problem because they were sending random *.exe files to my network...which get

RE: Possible Trojan.

2001-12-22 Thread bmurphy
YEs. I noticed that and had left a message for them to tell me the "7" viruses that were detected but I have not heard back yet.Everyone busy doing something else I guess (except me) -Original Message- From: Martin Blackstone [mailto:[EMAIL PROTECTED]] Sent: Saturday, December 2

  1   2   >