Solved

Am I secure

Posted on 2004-10-20
4
132 Views
Last Modified: 2013-12-04
I run a Windows 2003 server at home with Exchange 2003.

I have opened the following ports on the firewall 25, 80, 443, 1723 to allow smtp, Outlook Web Access, and a VPN.

I do not have an SSL certificate or any other type of encryption enabled.

To connect to OWA we require a strong password that is all.  This in itself I understand is supposed to be insecure.

However, on the router there is a facility that allows MAC address filtering which means that only machines with a specific IP address can get past the router and on to the local network.

Does this mean that my domain is secure from potential intruders?

Wing
0
Comment
Question by:WingYip
  • 3
4 Comments
 
LVL 18

Expert Comment

by:luv2smile
Comment Utility
"Does this mean that my domain is secure from potential intruders?"

Well in a quick answer, NO. Your domain is NEVER 100% secure from attack....no matter what firewall you use, what ports you block, etc.

If someone gets a virus and opens it and gets infected....then it is inside your network and can potentially move thru your network.

Viruses can open firewall ports even if you have them closed.

If  the machines you want to allow thru the router have static ip addresses then you can specifiy by ip address to only allow those machines thru. This does make things "More secure"....but nothing is ever 100% secure unless you unplug it from the network and turn it off.
0
 
LVL 1

Author Comment

by:WingYip
Comment Utility
Why is specific IP more secure than mac address filtering?
0
 
LVL 18

Expert Comment

by:luv2smile
Comment Utility
Well I didn't say it was more secure...just a different way.

You can filter by mac address to add an additional layer that would make things "more secure". But this is still not fool proof. MAC addresses as well as IPs can be spoofed.
0
 
LVL 18

Accepted Solution

by:
luv2smile earned 125 total points
Comment Utility
Another example...many attacks get thru on port 80....you can't really block this because it is used for web access....

Bottom line is a firewall just isn't enough these days....you have to have many levels of security and even still you are not completely protected.

0

Featured Post

Free camera licenses with purchase of My Cloud NAS

Milestone Arcus software is compatible with thousands of industry-leading cameras for added flexibility. Upon installation on your My Cloud NAS, you will receive two (2) camera licenses already enabled in the software. And for a limited time, get additional camera licenses FREE.

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Office 365 and ATP stops Ransomwares? 4 172
Security, hackers 10 111
IE Plugin Issue 4 60
Windows 2012 session collection security. 2 61
As I write this article, I am finishing cleanup from the Qakbot virus variant found in the wild on April 18, 2011.  It was a messy beast that had varying levels of infection, speculated as being dependent on how long it resided on the infected syste…
The term "Bad USB" is a buzz word that is usually used when talking about attacks on computer systems that involve USB devices. In this article, I will show what possibilities modern windows systems (win8.x and win10) offer to fight these attacks wi…
Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now