Solved

Only allow incoming emails from specific IP range

Posted on 2009-07-13
5
454 Views
Last Modified: 2012-05-07
I've recently implemented a hosted spam & virus filtering solution.  My MX record directs all email through this filter which then forwards the email to my exchange server.  I've noticed that some email gets through the filter by somehow sending the mail directly through to my IP address and bypassing the filter.  I was advised by their tech support to restrict all incoming email so that only mail coming from their two IP ranges would be accepted.  How do I configure this in my exchange server?

I am running exchange 2k3 on windows 2k3.
0
Comment
Question by:jer007
  • 3
  • 2
5 Comments
 
LVL 76

Accepted Solution

by:
Alan Hardisty earned 50 total points
ID: 24842132
Setup connection control on your default SMTP Virtual Server.
Open up Exchange System Manager, Expand Servers, Expand Your Server, Expand Protocosl, Expand SMTP.
Right-click on the default SMTP virtual server and choose properties.  Click on the Access tab and then on the Connection and then select Only the list below and add the IP's you want to allow.
0
 

Author Comment

by:jer007
ID: 24842162
Is there a way to add a range?  There are two sperate ranges with a total of 24 IP addresses each.  If possible, I'd rather not enter each one individually.
0
 
LVL 76

Expert Comment

by:Alan Hardisty
ID: 24842173
You can add single addresses, a range of addresses, or by domain.
0
 

Author Comment

by:jer007
ID: 24842264
I'm not seeing how to enter a range.  There is the option of Single address, Group of computers which allows the subnet address & subnet mask, or domain.

I only have the address range.  It is xxx.xxx.xxx.0 - xxx.xxx.xxx.24.  Do I enter it that way in the Subnet address/mask fields?  I wasn't given any sort of subnet mask.
0
 
LVL 76

Assisted Solution

by:Alan Hardisty
Alan Hardisty earned 50 total points
ID: 24842336
Group of computers is the option to add a range but with the addresses you have, there is no easy way to add them as a group as there is no subnet mask that covers 0-24.
You could add xxx.xxx.xxx.0 with a subnet mask of 255.255.255.240 which covers from 0-15, but you would then have to add 16 - 24 manually.
It might be easier to just add them all one by one - a little boring, but then you can remove them one by one later if neede, which would be much easier.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Utilizing an array to gracefully append to a list of EmailAddresses
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
In this video we show how to create an Accepted Domain in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Ac…
To show how to create a transport rule in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Rules tab.:  To cr…

810 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question