11-05-2013 01:23 PM - edited 03-11-2019 08:00 PM
Good Day guys,
Looking for a recommendation to secure imap via asa 5510. Currently running exchange 2003. Any assistance would be greatly appreciated.
11-05-2013 11:26 PM
What do you mean by securing?
In general: the ASA has no application-layer inspection for IMAP. To increase the security you could deploy a scenario like the following:
1) Configure your clients for IMAPs.
2) On the ASA configure a port-forwarding for TCP/993 (which is used by IMAPs) to a DMZ-server running an IMAP-proxy. This proxy could be NGINX or dovecot (there are probably more imap-proxies available)
3) On the proxy configure forwarding the traffic to the internal Exchange server which again has to be allowed on the ASA.
With this setup you don't have to expose your exchange directly to the internet.
Sent from Cisco Technical Support iPad App
11-07-2013 10:46 PM
This is not really a Cisco question but here is none Cisco answer:
http://security.fi.infn.it/tools/stunnel/index-en.html
11-09-2013 09:19 PM
Please rate our assistance
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide