Re: Exchange 2000 - Port 80

From: Andrew Mitchell (amitchel_at_removecasey.vic.gov.au)
Date: 03/17/04


Date: Tue, 16 Mar 2004 19:19:12 -0800


"Sam Ramsey" <anonymous@discussions.microsoft.com> said

> I have an Exchange 2000 with all the latest patches and
> IIS lockdown loaded. I have a Cisco firewall and allowing
> only port 25 and 80 on the outside IP address.
>
> External hackers are connecting to port 80 and accessing
> porn sites thru my exchange server. It seems like they are
> using my exchange server as proxy server. I am using
> Active Ports to monitor the ports on the exchange server
> and notice them connecting to port 80. I also have web
> monitoring software and notice the traffic to the porn
> sites on the exchange server. Is this a known problem with
> Exchange 2000? I dont think it is a problem with the
> firewall because I need to allow port 80 for OWA.

It *is* a problem with your firewall config.
OWA needs a rule on the firewall to allow *incoming* connections on port
80. As I stated in my earlier reply, there is absolutely no need to allow
outgoing connections from your exchange server where the destination is
port 80.
Block it at your firewall.

Andy.



Relevant Pages

  • Re: CheckPoint remote access
    ... running hyper terminal, connecting to the console port of the firewall, it is ... after the firewall is rebooted. ... > Captus Networks ...
    (Security-Basics)
  • Re: 500 "LPRT 6,16,0,0,0,0...,34,113,2,7,184 New Information
    ... Try change it to port 21 and test again. ... if ftp is not bind to default port. ... >>Cleared up an issue with our firewall and now, ... >>connecting to 192.xxx.xxx.xxx:4774 ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: Zonealarm and EDonkey2000
    ... I don't get a high ID Number when connecting ... >!If I shut down the firewall, there is no change in the ID! ... When you connect to a server it attempts to connect back to you on that port ...
    (comp.security.firewalls)
  • Re: Printing from Unix to Printer on PC
    ... The printer is connected to the USB port on the PC. ... firewall on the Network interface it is connecting to a ... > If you have the firewall enabled on XP you will need to setup an Exception ...
    (microsoft.public.windowsxp.configuration_manage)
  • Re: Printing from Unix to Printer on PC
    ... The printer is connected to the USB port on the PC. ... firewall on the Network interface it is connecting to a ... > If you have the firewall enabled on XP you will need to setup an Exception ...
    (microsoft.public.windowsxp.print_fax)