Solved

Exchange 2003 SMTP security lockdown procedures

Posted on 2007-03-25
1
2,239 Views
Last Modified: 2012-05-05
Im using Small Business Server for exchange 2003 mail management.

Periodocially i find that my server is being used to relay messages by spammers.

Is there a consise checklist of security steps i should follow?


0
Comment
Question by:mbalsam
1 Comment
 
LVL 104

Accepted Solution

by:
Sembee earned 500 total points
Comment Utility
Exchange 2003 is relay secure out of the box, so something has been changed.

There are three main ways that an Exchange server can be abused...

- configuration error on the SMTP virtual server or SMTP Connector turns the machine in to an open relay

- authenticated relaying - where the administrator password has been compromised and is being used to allow messages to be sent through the server.

- NDR spam - this is where messages are sent to your server with invalid email addresses on purpose. Your server then tries to bounce them back to the "sender" - who is spoofed and is the real target.

For NDR spam you should deploy recipient filtering and the tarpit.
http://www.amset.info/exchange/filter-unknown.asp

For authenticated user relaying, you need to look at changing the settings.
http://www.amset.info/exchange/smtp-relaysecure.asp

Finally, for checking whether the machine is an open relay, see my article here:
http://www.amset.info/exchange/smtp-openrelay.asp

Simon.
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Resolve Outlook connectivity issues after moving mailbox to new Exchange 2016 server
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
In this video we show how to create a Shared Mailbox in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >> Sha…
In this video we show how to create a mailbox database in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Servers >> Data…

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now