Re: [fw-wiz] PIX -> ISA -> OWA Configuration

From: Chris Blask (chris_at_blask.org)
Date: 05/10/05

  • Next message: Marcus J. Ranum: "[fw-wiz] A fun smackdown..."
    To: vbwilliams@neb.rr.com, Paul Melson <psmelson@comcast.net>
    Date: Mon, 09 May 2005 21:44:26 -0400
    
    

    Hi folks!

    At 10:47 AM 5/7/2005, Victor Williams wrote:
    >Personally, I didn't see any reason to state the obvious when it was there
    >for everyone to see.
    >
    >There is no *safe* or *best* way to deploy that architecture as far as I'm
    >concerned. The sooner everyone just accepts that, the better off everyone
    >will be.

    Everyone that counts (the folks who pay for all this stuff) don't give a
    mongoose's hooter what architecture is used, they just want their apps to
    work where they need them. On this one I agree with them whole-heartedly:
    I'd like to be able to read my email displayed on the fannies of migratory
    waterfowl. I'll settle for bioptic HUD glasses that can overlay the text
    as opposed to actually laser-printing on loons, but it better be no less
    secure than a workstation in a cube however it gets done.

    >I've found personally that a correctly implemented VPN solution is 1000
    >times better than trying to get OWA deployed and *safe*.

    The only problem with VPNs are kiosks and other Not-My-Computer
    situations. Webmail will be implemented (even, I shudder to say, OWA)
    because we haven't yet made VPNs fully portable.

    If you have to use OWA, I'd use one of the mail firewalls out there
    (BorderWare or IronMail, for example) in front of it. Something like that
    gives you a break in the chain between your MaxiSoft servers and the World,
    and a dev team to maintain it and pester when you feel antsy.

    -cheers!

    -chris

    Chris Blask
    chris@blask.org
    blaskworks.blogspot.com

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Marcus J. Ranum: "[fw-wiz] A fun smackdown..."

    Relevant Pages

    • Re: User/Client POP3 retrival into exchange mailbox
      ... What's the reason you can't use OWA? ... > What I ideally require is for the ability for people to have a mailbox ... > downloaded via POP3. ...
      (microsoft.public.exchange.connectivity)
    • Re: OWA from Outside the LAN periodically drops
      ... server. ... that experience connection issues. ... For some reason they can be using OWA without any problems then the next ...
      (microsoft.public.exchange.clients)
    • OWA browser incompatibility?
      ... We have one user trying to access his account via OWA who, ... reason, on only one computer cannot get in. ... Did a spyware scan, virus scan too. ...
      (microsoft.public.exchange.connectivity)
    • Re: OWA will not display certain messages
      ... terms) characters in the subject line. ... Since IIS uses the subject of the ... I'm not sure if this is the reason behind your problem, ... > problem with OWA? ...
      (microsoft.public.exchange.misc)