?
Solved

Exchange 2003 SMTP security lockdown procedures

Posted on 2007-03-25
1
Medium Priority
?
2,254 Views
Last Modified: 2012-05-05
Im using Small Business Server for exchange 2003 mail management.

Periodocially i find that my server is being used to relay messages by spammers.

Is there a consise checklist of security steps i should follow?


0
Comment
Question by:mbalsam
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 104

Accepted Solution

by:
Sembee earned 2000 total points
ID: 18788341
Exchange 2003 is relay secure out of the box, so something has been changed.

There are three main ways that an Exchange server can be abused...

- configuration error on the SMTP virtual server or SMTP Connector turns the machine in to an open relay

- authenticated relaying - where the administrator password has been compromised and is being used to allow messages to be sent through the server.

- NDR spam - this is where messages are sent to your server with invalid email addresses on purpose. Your server then tries to bounce them back to the "sender" - who is spoofed and is the real target.

For NDR spam you should deploy recipient filtering and the tarpit.
http://www.amset.info/exchange/filter-unknown.asp

For authenticated user relaying, you need to look at changing the settings.
http://www.amset.info/exchange/smtp-relaysecure.asp

Finally, for checking whether the machine is an open relay, see my article here:
http://www.amset.info/exchange/smtp-openrelay.asp

Simon.
0

Featured Post

Get 15 Days FREE Full-Featured Trial

Benefit from a mission critical IT monitoring with Monitis Premium or get it FREE for your entry level monitoring needs.
-Over 200,000 users
-More than 300,000 websites monitored
-Used in 197 countries
-Recommended by 98% of users

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Read this checklist to learn more about the 15 things you should never include in an email signature.
If you troubleshoot Outlook for clients, you may want to know a bit more about the OST file before doing your next job. IMAP can cause a lot of drama if removed in the accounts without backing up.
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…
This video demonstrates how to sync Microsoft Exchange Public Folders with smartphones using CodeTwo Exchange Sync and Exchange ActiveSync. To learn more about CodeTwo Exchange Sync and download the free trial, go to: http://www.codetwo.com/excha…
Suggested Courses
Course of the Month14 days, 5 hours left to enroll

800 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question