RE: Exchange server & Web Security for mid size company.... Need advise.



I'm an advocate of AV at the gateway, mail server and desktop. In fact, I'd
argue that if a virus gets as far as the desktop, something went wrong.

Here is an option, if cost is your problem:

1. At the gateway, you can use DNS blacklists like Spamcop to drop
connection from "known bad" sources. This will remove most bad traffic.
(This can also be done at the mail server, of course.)

2. Exchange 2003's own spam filter is pretty good, and free (and is
essentially what they use for Hotmail, so it has millions of users "giving
feedback").

3. AntiVirus on the Exchange server will take out a LOT of "virus" messages
in times of outbreak, which fill users' mailboxes.

Between the three, you should have a pretty decent "free" AS solution.

Simon Collier

-----Original Message-----
From: phunked up! [mailto:phunkodelic@xxxxxxxxx]
Sent: Monday, January 09, 2006 8:14 AM
To: security-basics@xxxxxxxxxxxxxxxxx
Subject: Exchange server & Web Security for mid size company.... Need
advise.

Am getting ready to run install a complete email system (Exchange
server) for approximatley 175 users. For antivirus we are currently
running Trend company wide and it has served us well. We currently
have no spyware solution to filter web traffic. My plan is to
purchase Norton 8200 Antivirus & Antispam firewall (applicance) and to
put Trend Scanmail for exchange on our server. Figured that that
might be overkill int the antivrus department and here is why:

Clients-Trend Micro
Exchange Server - Scan Mail for Exchange
Gateway Solution - Norton 8200 Spam-Virus Firewall.

What I was thinking of doing was just puttting regular antivirus
client on Exchange and using the saved money to purchase an
anitspyware appliance from Barracuda Networks. I would think that two
layers of virus protection (gateway, client) would be fine and three
layers (gatway, email server, client) may be a bit much for a
small-medium environment. In my last exchange deployment several
years ago I had it set up with regular cleint on exchange server and a
gatway solution. Of course years ago things were a bit different.

Any opinions would be much apprecaited.

---------------------------------------------------------------------------
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The Norwich University program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Tailor your education to your own professional goals with degree
customizations including Emergency Management, Business Continuity Planning,

Computer Emergency Response Teams, and Digital Investigations.

http://www.msia.norwich.edu/secfocus
----------------------------------------------------------------------------

Attachment:smime.p7s
Description: S/MIME cryptographic signature



Relevant Pages

  • Re: Exchange Disaster Recovery Server
    ... The backup server is setup also in the lab so I ... >>> The Microsoft Exchange Server computer is not available. ... >>> Microsoft Exchange Server Information Store ...
    (microsoft.public.exchange2000.admin)
  • Re: Information Store taking all available memory.
    ... There are cases where the virus software is scanning things it should not ... The aforementioned should be excluded in the virus software. ... Do Not Back Up or Scan Exchange 2000 Drive M ... Understanding Virus Scanning API 2.0 in Exchange 2000 Server ...
    (microsoft.public.exchange2000.information.store)
  • Re: Mail sitting in E2k3->E2k7 (Routing Group Connctor) Queue?
    ... I also have similar problem when some of the users somehow still sending to the old Routing group connectors? ... Looking at the Headers and the Queue on the 2003 server, ... Exchange 2003 to Exchange 2007 will delay. ... Seems like I would also need a Routing Connector on the 2000 to bridge to ...
    (microsoft.public.exchange.connectivity)
  • Re: Mail delivery wierdness
    ... That's usually the behaviour indicating that there is a server at ... MS Exchange is pretty far beyond the ... FreeBSD gateway?). ... SMTP is a connection-oriented service. ...
    (freebsd-questions)
  • Exchange 2003 SP1 periodicaly losses connection to active directory for about 30 minutes
    ... We have active directory in two servers but the mail server fails to ... the promotion of the server to active directory the exchange was up. ... After a Domain Controller is promoted to a Global Catalog, ...
    (microsoft.public.exchange.misc)