All:

We run IMail within a university environment.  Even though we do have the student 
network separated from our production network with VLANs, we still have the joy of 
dealing with attacks directed towards our IMail box from the student VLAN and 
computing labs.  Thus, we get to deal with script kiddies from both the inside and 
outside.

I�d like to place a transparent firewall device (Netscreen 5Xp) right in front of the 
IMail server.  Since this configuration would result in a firewall inside our Windows 
AD network, I really need to make sure not only IMail traffic can pass in and out of 
the firewall but Window�ish stuff as well (MS Directory services, Global Catalog, WTS, 
etc) or the box won�t be able to communicate with the rest of the windows network.  
BTW � all other DCs use internal IPs so they don�t get hit with port scans, etc from 
the outside world.

Has anyone else done this?  If so, I�d hate to reinvent the wheel!  What ports, 
protocols and directions did you configure on the firewall to protect the IMail box, 
as well as, the role the machine must play in the Active Directory infrastructure?

Thanks!

Sean Malone


Please visit http://www.ipswitch.com/support/mailing-lists.html
to be removed from this list.

An Archive of this list is available at:
http://www.mail-archive.com/imail_forum%40list.ipswitch.com/

Please visit the Knowledge Base for answers to frequently asked
questions:  http://www.ipswitch.com/support/IMail/

Reply via email to