cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1734
Views
0
Helpful
3
Replies

Does anyone allow Exc 5.5 to SMTP behind a FW to Internet?

mgraci_ironport
Level 1
Level 1

I am trying to redesign our SMTP infrastructure to maintain a consistent flow of mail.

I was thinking of using the DMZd Ironport only for inbound Internet mail and creating a 2nd Exchange 5.5 Server with an IMC connecting directly to our ISP via a FW connection for all outbound traffic.

Does anyone do this? Are there security concerns with an Outbound only 5.5 IMC behind a FW?

Thanks,
-Matt

3 Replies 3

Erich_ironport
Level 1
Level 1

Just add another listener on a second IP and use the same IronPort for both inbound and outbound email to the Internet, it's a whole lot better solution than exposing Exchange 5.5 to the Internet (even outbound behind a firewall).

Erich

Corey_ironport
Level 1
Level 1

I would agree with Erich.

mgraci_ironport
Level 1
Level 1

Thanks for the feedback.

I am thinking that I will use our NLB switch to make box1 our primary inbound SMTP server with failover to box2 and make box2 the primary outbound SMTP server with failover to box1.

That should segegrate the traffic and provide HW failover.

-Matt