I assume that the internal network is behind some appliance of some sort,
either a firewall or a router, etc.  Block port 25 to everything but
specified good IPs (the proper mail server).  This would be relatively
simple, and would stop MOST people trying to get around it.  Realistically,
they could proxy it through another port, etc., but it would fix most of it
pretty inexpensively.

As for the infected laptop, that will always be a concern.  Not very much
you can do about that.

Josh

> -----Original Message-----
> From: Jochem van Dieten [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 21, 2003 3:32 PM
> To: CF-Community
> Subject: Clean off
>
>
> Josh Remus wrote:
> >Secondly - if checking external, private POP3 servers is a security risk,
> >why not shut it down?
>
> At what price? How do you shut down access to them?
>
> And even if you succeed, how do you prevent somebody from getting
> infected at home and bringing his laptop in?
>
> Jochem
> 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Archives: http://www.houseoffusion.com/lists.cfm?link=t:5
Subscription: http://www.houseoffusion.com/lists.cfm?link=s:5
Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.5

This list and all House of Fusion resources hosted by CFHosting.com. The place for 
dependable ColdFusion Hosting.
http://www.cfhosting.com

Reply via email to