RE: Microsoft SMTP Service
From: Jonathon.Kalaugher@sbg-ap.comDate: 07/26/01
- Previous message: Donna MacLeod: "RE: Intranet access"
- Maybe in reply to: Matthew.Tim@cantire.com: "Microsoft SMTP Service"
- Next in thread: Rich Wilson: "Re: Microsoft SMTP Service"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Message-ID: <E48EF4B51A3A47468CEA37E874AA16D831AAEC@eidyia.spherebusinessgroup.com> From: Jonathon.Kalaugher@sbg-ap.com To: Matthew.Tim@cantire.com Subject: RE: Microsoft SMTP Service Date: Thu, 26 Jul 2001 10:40:56 +1200
Watch out for SMTP relaying if this is the IIS SMTP service or the Win2k
SMTP vulnerability (if your OS is Win2k of course..)
Check out.
http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/
bulletin/MS01-037.asp
To eliminate the relaying risk for IIS SMTP you will need to review the
"Relaying" security settings in properties of the SMTP Virtual server in the
IIS admin console.
Good luck
JK
-----Original Message-----
From: Matthew.Tim@cantire.com [mailto:Matthew.Tim@cantire.com]
Sent: Thursday, July 26, 2001 7:10 AM
To: focus-ms@securityfocus.com
Subject: Microsoft SMTP Service
Hello all,
Has anyone used the MS SMTP service on an IIS web server? Are there any
security risks associated with this if the server is sitting in a DMZ and
will be using this to send mail out to an external mail domain? Any help
here would be appreciated.
MT
- Previous message: Donna MacLeod: "RE: Intranet access"
- Maybe in reply to: Matthew.Tim@cantire.com: "Microsoft SMTP Service"
- Next in thread: Rich Wilson: "Re: Microsoft SMTP Service"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|