It also helps to use ODBC or the Imail database for authentication.  Using
the NT SAM opens the system up to attacks since every Imail user potentially
is a username that can be hacked.

                                        Frank J Nastro

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Robert Wilson
Sent: Tuesday, October 05, 1999 11:43 AM
To: [EMAIL PROTECTED]
Subject: RE: [IMail Forum] Locking down a dedicated Imail srvr


> Anybody gone thru this exercise and is willing to share it?

I'm no expert, but the first thing I do is disable all unnecessary network
services. If you don't need any Microsoft networking services, I think one
could remove all network services. NT will complain that the Microsoft
network stuff is not installed, but it works. Of course if you are using the
NT domain for authentication, you'll need some of these services.

The next thing is to make sure the system is patched up with security fixes.

If this system is on a dmz, set your router to only allow the appropriate
protocols to pass, i.e., if you are supporting only POP and SMTP, don't
allow IMAP or any other protocols to pass through the router to the server.

Once all this stuff is done, configure security on the application itself.

I hope this helps,
Robert



Please visit http://www.ipswitch.com/support/mailing-lists.html
to be removed from this list.

Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

Reply via email to